IOC Radar

Threat Reports

Structured intelligence from research labs, CERTs, and threat analysis platforms

299reports indexed
IOC extraction is automated and may include false positives.
299 reports total
Filter by Malware / Threat Family
SE
Securelist
RESEARCH BLOG
May 1442 IOCs

Kimsuky targets organizations with PebbleDash-based tools

APT43Kimsuky
TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
Yesterday2 IOCs

Proofpoint Warns TA4922 Deploys Atlas RAT and Multiple Malware Loaders

TA4922
TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
Yesterday3 IOCs

Malicious binding.gyp Campaign Targets npm Packages Across Maintainer Accounts

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
Yesterday3 IOCs

Cybercriminals Impersonate Claude Code to Deploy Fileless .NET Infostealer

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
Yesterday3 IOCs

Hackers Deploy FlutterShell Backdoor Through Malvertising Campaigns

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
Yesterday4 IOCs

Stock Exchange Executive’s Outlook Account Targeted in Credential Theft Attack

TLP:WHITEView report →
SL
SlowMist
RESEARCH BLOG
Yesterday28 IOCs

Threat Intelligence | Red Hat Cloud Services npm Package Supply Chain Poisoning

TLP:WHITEView report →
AS
AWS Security
RESEARCH BLOG
Today1 IOC

Gain visibility into DDoS attacks with flow logs in AWS Shield Advanced

TLP:WHITEView report →
AS
AWS Security
RESEARCH BLOG
Today1 IOC

Customize federated sign-in with new Amazon Cognito Lambda trigger

TLP:WHITEView report →
AS
AWS Security
RESEARCH BLOG
Today1 IOC

Amazon Cognito unlocks advanced capabilities with next-generation infrastructure

TLP:WHITEView report →
NS
Nextron Systems
RESEARCH BLOG
4d ago12 IOCs

Detecting Nimbus Manticore and their sideloading infection chains

UNC1549AsyncRATMETA Stealer
TLP:WHITEView report →
SE
Securelist
RESEARCH BLOG
2d ago25 IOCs

Argamal: Malware hidden in hentai games

TLP:WHITEView report →
SE
Securelist
RESEARCH BLOG
May 1442 IOCs

Kimsuky targets organizations with PebbleDash-based tools

APT43Kimsuky
TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
2d ago3 IOCs

Critical Apache ActiveMQ Flaw Enables Security Header Injection

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
2d ago2 IOCs

Ivanti ITSM Vulnerability Allows Attacker to Gain Admin Privileges

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
2d ago2 IOCs

Node.js Compression Library Vulnerable Again After CVE-2026-24884 Bypass

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
2d ago3 IOCs

WeedHack Minecraft Malware Spreads Through YouTube and SEO Poisoning

TLP:WHITEView report →
CP
Cyber Press
RESEARCH BLOG
2d ago1 IOC

Ransomware Gang Abuses Fortinet Flaws With Custom C2 Frameworks

Black BastaContiBlack BastaCobalt Strike
TLP:WHITEView report →
RF
Recorded Future Blog
RESEARCH BLOG
May 1533 IOCs

April 2026 CVE Landscape

MedusaMirai
TLP:WHITEView report →
RF
Recorded Future Blog
RESEARCH BLOG
Apr 13, 202635 IOCs

March 2026 CVE Landscape: 31 High-Impact Vulnerabilities Identified, Interlock Ransomware Group Exploits Cisco FMC Zero-Day

Certify
TLP:WHITEView report →
CY
Cyble
RESEARCH BLOG
May 152 IOCs

GCC Cyber 2026: How Digital Banking Expansion Is Creating a New Attack Surface Attackers Are Already Exploiting

AkiraContiAkiraConti
TLP:WHITEView report →
CY
Cyble
RESEARCH BLOG
May 2121 IOCs

JOMANGY: INJ3CTOR3’s Self-Healing FreePBX Toll Fraud Campaign

Cobalt Strike
TLP:WHITEView report →
CY
Cyble
RESEARCH BLOG
May 275 IOCs

OverlayPhantom: The Android Banking Trojan Hiding in Plain Sight

PlayTA0027Play
TLP:WHITEView report →
CE
CERT.PL
RESEARCH BLOG
2d ago2 IOCs

Vulnerabilities in school-management-system software

TLP:WHITEView report →