Netcrook

Threat Actors

2317 article(s)

RecoverIt: Attackers Exploit Windows Service Recovery for Stealthy Malware

🗓 10 Feb 2026 · 👤 LOGICFALCON

RecoverIt is a new tool that lets attackers exploit Windows service recovery features to execute malware undetected, bypassing traditional defenses. This article explains how the technique works, why it's hard to spot, and what security teams need to watch for.

Silent Invaders: Stealth Backdoors Target Ivanti EPMM in New Cyber Campaign

🗓 10 Feb 2026 · 👤 CRYSTALPROXY

Threat actors are exploiting Ivanti EPMM flaws to install memory-resident backdoors, creating a silent inventory of compromised servers for sale. Discover the stealthy tactics, risks, and urgent steps for defenders.

Spain’s Most Wanted in Moscow: The Cyber Asylum Saga of Enrique Arias Gil

🗓 10 Feb 2026 · 👤 LOGICFALCON · 🌍 Europe

Russian asylum for Spanish professor Enrique Arias Gil, accused of orchestrating pro-Kremlin cyber operations, ignites diplomatic tensions and highlights the evolving landscape of international cyber conflict.

China’s DKnife Router Attacks: Inside the Advanced Cyber Espionage Toolkit

🗓 06 Feb 2026 · 👤 CRYSTALPROXY · 🌍 Asia

The DKnife framework, operated by China-linked cyber actors, turns routers into powerful espionage tools—capable of hijacking downloads, stealing credentials, and silently delivering malware across Asia and beyond.

Web Traffic Under Siege: Inside the NGINX Server Redirection Scandal

🗓 05 Feb 2026 · 👤 LOGICFALCON

A new wave of cyberattacks is hijacking NGINX servers, redirecting unsuspecting users to phishing and scam sites. Learn how attackers operate, who’s at risk, and how to secure your web infrastructure.

NGINX Servers Hijacked: Hackers Secretly Redirect Web Traffic to Scam Sites

🗓 05 Feb 2026 · 👤 CRYSTALPROXY · 🌍 Asia

A stealthy cyber campaign is rewriting NGINX server rules to redirect users from legitimate websites to scam pages. Discover how attackers exploit configuration files, the multi-stage infection process, and why server admins must stay vigilant.

Proxy Shadows: Global Citrix Gateway Reconnaissance Campaign Exposed

🗓 04 Feb 2026 · 👤 LOGICFALCON · 🌍 North America

A sprawling, stealthy reconnaissance operation leveraged tens of thousands of residential proxies and cloud infrastructure to map Citrix NetScaler Gateways globally—setting the stage for targeted cyberattacks exploiting new Citrix vulnerabilities.

AI Agents Gone Rogue: OpenClaw Marketplace Flooded with Stealthy Malware

🗓 03 Feb 2026 · 👤 CRYSTALPROXY

Cybercriminals are exploiting OpenClaw’s skills marketplace to distribute hundreds of malicious AI tools, unleashing advanced malware that targets sensitive data across multiple platforms.

PeckBirdy Hackers: The Cross-Platform Malware Framework Exploiting Everyday Tools

🗓 02 Feb 2026 · 👤 LOGICFALCON · 🌍 Asia

PeckBirdy is a sophisticated JScript-based malware framework abusing everyday Windows tools (LOLBins) to deliver stealthy backdoors across diverse environments. Recent campaigns targeted Asian gambling and government organizations with advanced payloads, exposing new challenges for defenders.

Shadow SEO: China-Linked UAT-8099 Hijacks IIS Servers in Thailand and Vietnam

🗓 30 Jan 2026 · 👤 CRYSTALPROXY · 🌍 Asia

A new campaign by China-linked UAT-8099 is targeting IIS servers in Thailand and Vietnam with BadIIS malware, injecting SEO fraud and redirects while evading detection through advanced persistence strategies.

« Prev 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 Next »