Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

securelist.com

Securelist

Get the latest updates from Securelist directly as they happen.

Follow now 187 followers

Latest posts

Last updated 2 days ago

Scammers mass-mailing the Efimer Trojan to steal crypto

2 days ago

Introduction In June, we encountered a mass mailing campaign impersonating lawyers from...

Driver of destruction: How a legitimate driver is being used to take down AV processes

4 days ago

Introduction In a recent incident response case in Brazil, we spotted intriguing...

Cobalt Strike Beacon delivered via GitHub and social media

11 days ago

Introduction In the latter half of 2024, the Russian IT industry, alongside...

ToolShell: a story of five vulnerabilities in Microsoft SharePoint

16 days ago

On July 19–20, 2025, various security companies and national CERTs published alerts...

Rumble in the jungle: APT41’s new target in Africa

20 days ago

Introduction Some time ago, Kaspersky MDR analysts detected a targeted attack against...

GhostContainer backdoor: malware compromising Exchange servers of high-value organizations in Asia

24 days ago

In a recent incident response (IR) case, we discovered highly customized malware...

Forensic journey: Breaking down the UserAssist artifact structure

27 days ago

Introduction As members of the Global Emergency Response Team (GERT), we work...

Code highlighting with Cursor AI for $500,000

about 1 month ago

Attacks that leverage malicious open-source packages are becoming a major and growing...

Approach to mainframe penetration testing on z/OS. Deep dive into RACF

about 1 month ago

In our previous article we dissected penetration testing techniques for IBM z/OS...

Batavia spyware steals data from Russian organizations

about 1 month ago

Introduction Since early March 2025, our systems have recorded an increase in...

AI and collaboration tools: how cyberattackers are targeting SMBs in 2025

about 2 months ago

Cyberattackers often view small and medium-sized businesses (SMBs) as easier targets, assuming...

SparkKitty, SparkCat’s little brother: A new Trojan spy found in the App Store and Google Play

about 2 months ago

In January 2025, we uncovered the SparkCat spyware campaign, which was aimed...