Tool
| 23.01.2026 | The Skeleton Key | The Skeleton Key: How Attackers Weaponize Trusted RMM Tools for Backdoor Access | MALWARE | TOOL |
| 04.11.2025 | BLINDINGCAN | DPRK’s Playbook: Kimsuky’s HttpTroy and Lazarus’s New BLINDINGCAN Variant | MALWARE | Tool |
| 19.07.2025 | MFSocket | Massistant is the presumed successor to Chinese forensics tool, “MFSocket”, reported in 2019 and attributed to publicly traded cybersecurity company, Meiya Pico | MALWARE | TOOL |
| 28.03.2025 | EDRKillShifter | Shifting the sands of RansomHub’s EDRKillShifter | MALWARE | Tool |
| 16.03.2025 | StealBit | THREAT ANALYSIS REPORT: Inside the LockBit Arsenal - The StealBit Exfiltration Tool | MALWARE | TOOL |
| 20.07.2024 | AuKill | ‘AuKill’ EDR killer malware abuses Process Explorer driver | MALWARE | Tool |
| 05.04.2024 | JSOutProx | Resecurity has detected a new version of JSOutProx, targeting financial services and organizations in the APAC and MENA regions. | MALWARE | Tool |
| 30.09.2023 | Impacket | Impacket is an open source collection of modules written in Python for programmatically constructing and manipulating network protocols | MALWARE | Tool |
| 30.09.2023 | Mimikatz | What if we were to tell you that there was a magical tool that could greatly simplify the discovery and pillaging of credentials from Windows-based hosts. | MALWARE | Tool |
| 30.09.2023 | AdFind | AdFind is a free command-line query tool that can be used for gathering information from Active Directory. | MALWARE | Tool |
| 02.09.2023 | TrillClient | TrillClient toolset is an information stealer designed to steal browser data, and is packed in a single cabinet file (.cab) and extracted through the utility application expand.exe. | MALWARE | Tool |
| 23.08.2023 | Spacecolon | Analysis of Spacecolon, a toolset used to deploy Scarab ransomware on vulnerable servers, and its operators, CosmicBeetle | MALWARE | Tool |
| 25.09.2024 | Splinter | Discovering Splinter: A First Look at a New Post-Exploitation Red Team Tool | MALWARE | Tool Exploit |
| 30.03.2026 | CTRL TOOLKIT | Under CTRL: Dissecting a Previously Undocumented Russian .Net Access Framework | MALWARE | TOOLKIT |
| 05.10.2025 | MatrixPDF | MatrixPDF Puts Gmail Users at Risk with Malicious PDF Attachments | MALWARE | Toolkit |
| 21.03.2025 | Bloody Wolf | The notorious cluster changes its toolkit by switching from malware to a legitimate remote administration tool | MALWARE | Toolkit |
| 25.05.2023 | Prikormka | Operation Groundbait: Analysis of a surveillance toolkit | MALWARE | Toolkit |
| 14.03.2023 | R3NIN Sniffer Toolkit | Credit card sniffers are malicious codes usually programmed in JavaScript and designed to covertly steal payment card information and Personally Identifiable Information (PII) entered by the victim on a compromised e-commerce/merchant website. Sniffer programs are also often termed ‘Online Skimmer’. R3NIN is a recent example of one such sniffer. | MALWARE | Toolkit |