Tool
Advanced Espionage Tool Adware AI Android APP APPX file ATM Malware Backdoor Banking Bookit Bot BotNet Code-injection CoinMiners Crypt Cryptocurrency Cryptojacking CyberSpy Data Wiper DDoS DEAMON Destructive Malware DNS Backdoor Downloader Driver Droper EDR and AV Killer ELF ENGINE Espionage Exploit Families Fileless FRAMEWORK FUD Engine Go GPT GPU GRU Malware HTML ICS InfoStealer Injector iOS IoT IRC ISS Java JavaScipt JSON Keylogger Killer Kit LINUX Loader Maas MacOS Macro Malware Military Malware Miner Mobil MultiOS nmp OS OSX OT malware P2P virus Password STEALER Pay-per-install (PPI) PoS Malware PowerShell Program PyPI Python QR trojan Ransom Raspberry RAT Roque Rootkit SMS Spy Spyware SQL Malware Stealer SymbOS Tool Trojan TV UEFI bootkit USB Utility VBA Macro VBE VBS VHD malware Virus Vishing toolset VMware ESXi Windows Wipper WM virus Worm Wrapper
| 07.07.26 | DEBULL | DEBULL: Storm-2372-Style Microsoft Device-Code Phishing With GraphSpy Post-Exploitation | MALWARE | TOOL |
| 07.07.26 | Vshell | Vshell: A Chinese-Language Alternative to Cobalt Strike | MALWARE | TOOL |
| 14.05.26 | BitUnlocker | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets | MALWARE | TOOL |
| 14.05.26 | PebbleDash-based tools | Kimsuky targets organizations with PebbleDash-based tools | MALWARE | TOOL |
|
30.03.26 |
Under CTRL: Dissecting a Previously Undocumented Russian .Net Access Framework |
TOOLKIT |
||
|
23.01.26 |
The Skeleton Key: How Attackers Weaponize Trusted RMM Tools for Backdoor Access |
TOOL |
||
|
04.11.25 |
DPRK’s Playbook: Kimsuky’s HttpTroy and Lazarus’s New BLINDINGCAN Variant |
Tool |
||
|
05.10.25 |
MatrixPDF Puts Gmail Users at Risk with Malicious PDF Attachments |
Toolkit |
||
|
19.07.25 |
Massistant is the presumed successor to Chinese forensics tool, “MFSocket”,
reported in 2019 and attributed to publicly traded cybersecurity |
TOOL |
||
|
28.03.25 |
Shifting the sands of RansomHub’s EDRKillShifter |
Tool |
||
|
21.03.25 |
The notorious cluster changes its toolkit by switching from malware to a legitimate remote administration tool |
Toolkit |
||
|
16.03.25 |
THREAT ANALYSIS REPORT: Inside the LockBit Arsenal - The StealBit Exfiltration Tool |
TOOL |
||
|
25.09.24 |
Discovering Splinter: A First Look at a New Post-Exploitation Red Team Tool |
Tool Exploit |
||
|
20.07.24 |
‘AuKill’ EDR killer malware abuses Process Explorer driver |
Tool |
||
|
05.04.24 |
Resecurity has detected a new version of JSOutProx, targeting financial services and organizations in the APAC and MENA regions. |
Tool |
||
|
30.09.23 |
Impacket is an open source collection of modules written in Python for programmatically constructing and manipulating network protocols |
Tool |
||
|
30.09.23 |
What if we were to tell you that there was a magical tool that could greatly simplify the discovery and pillaging of credentials from Windows-based hosts. |
Tool |
||
|
30.09.23 |
AdFind is a free command-line query tool that can be used for gathering information from Active Directory. |
Tool |
||
|
02.09.23 |
TrillClient toolset is an information stealer designed to steal browser data, and is packed in a single cabinet file (.cab) and extracted through the utility application expand.exe. |
Tool |
||
|
23.08.23 |
Analysis of Spacecolon, a toolset used to deploy Scarab ransomware on vulnerable servers, and its operators, CosmicBeetle |
Tool |
||
|
25.05.23 |
Operation Groundbait: Analysis of a surveillance toolkit |
Toolkit |
||
|
14.03.23 |
Credit card sniffers are malicious codes usually programmed in
JavaScript and designed to covertly steal payment card information and
Personally Identifiable Information |
Toolkit |