logo

Cisco Talos

ID: 22bdb9b5-39e8-5994-8da9-62d9763af2f3

STIX ID: identity--22bdb9b5-39e8-5994-8da9-62d9763af2f3

Feed Type: rss

Earliest post: 2024-01-24

Latest post: 2026-08-27

Talos intelligence and world-class threat research team better protects you and your organization against known and emerging cybersecurity threats.

01/01/2020
08/30/2026
Title Date Published Describes IncidentAuthorVisible
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend2026-08-27TrueDavid J. BiancoTrue
The safety penalty: Reclaiming operational sovereignty in the age of AI2026-08-25TrueDavid J. BiancoTrue
Is Cyber missing the Marque?2026-08-20TrueMick BaccioTrue
UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations2026-08-20TrueJoey ChenTrue
Describing attacks with crime script analysis2026-08-19TrueMartin LeeTrue
Curiouser and Curiouser2026-08-13TrueWilliam LargentTrue
Dissecting the JWR phishing framework2026-08-13TrueChetan RaghuprasadTrue
Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities2026-08-11TrueCisco TalosTrue
Why metaphor may dictate your security strategy2026-08-06TrueMartin LeeTrue
“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI2026-08-04TrueNick BiasiniTrue
You were onto something with “It’s the Climb,” Miley2026-07-30TrueAmy CiminnisiTrue
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains2026-07-28TrueLexi DiScolaTrue
Don’t swing at everything2026-07-23TrueThorsten RosendahlTrue
Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel2026-07-23TrueJordyn DunkTrue
Begun, the Patch Wars have2026-07-16TrueJoe MarshallTrue
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign2026-07-16TrueAlex KarkinsTrue
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities2026-07-14TrueCisco TalosTrue
The serpent’s tongue: Luring the Python out of its den2026-07-14TrueOnur Mustafa ErdoganTrue
WolfSSL, GeoVision, VTK vulnerabilities2026-07-09TrueKri DontjeTrue
Winning 54% of the time2026-07-09TrueHazel BurtonTrue
UAT-7810 continues building ORB networks using new malware2026-07-07TrueJungsoo AnTrue
Catan and Mouse2026-07-02TrueWilliam LargentTrue
ARToken: Inside an EvilTokens affiliate panel targeting Microsoft 3652026-07-01TrueMichael KelleyTrue
Beyond IOCs: AI-enabled threat intelligence2026-06-25TrueMartin LeeTrue
Introduction to COM usage by Windows threats2026-06-25TrueVanja SvajcerTrue
Close Encounters of the Human Kind2026-06-18TrueHazel BurtonTrue
A tale of two eras2026-06-11TrueAmy CiminnisiTrue
Microsoft Patch Tuesday for June 2026 — Snort rules and prominent vulnerabilities2026-06-09TrueChetan RaghuprasadTrue
Reporting from Vegas: Networking, AI, and good boys2026-06-04TrueJoe MarshallTrue
Hypotheses, telemetry, and human judgment: Inside Cisco Talos Threat Hunting2026-06-04TrueCisco TalosTrue
Less panic patching, more precision2026-05-28TrueThorsten RosendahlTrue
DICOM, Pydicom, GDCM, and Orthanc: A technical tour of what really happens in the heap2026-05-28TrueEmmanuel TacheauTrue
MediaArea heap-based buffer overflow vulnerabilities2026-05-27TrueKri DontjeTrue
The art of being ungovernable2026-05-21TrueWilliam LargentTrue
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities2026-05-19TrueKri DontjeTrue
From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat2026-05-19TrueJoey ChenTrue
The time of much patching is coming2026-05-14TrueMartin LeeTrue
Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities2026-05-14TrueCisco TalosTrue
Microsoft Patch Tuesday for May 2026 — Snort rules and prominent vulnerabilities2026-05-12TrueJaeson SchultzTrue
State-sponsored actors, better known as the friends you don’t want2026-05-12TrueElio BiasiottoTrue
Unplug your way to better code2026-05-07TrueAmy CiminnisiTrue
Insights into the clustering and reuse of phone numbers in scam emails2026-05-06TrueOmid MirzaeiTrue
UAT-8302 and its box full of malware2026-05-05TrueJungsoo AnTrue
CloudZ RAT potentially steals OTP messages using Pheno plugin2026-05-05TrueAlex KarkinsTrue
Great responsibility, without great power2026-04-30TrueHazel BurtonTrue
It pays to be a forever student2026-04-23TrueJoe MarshallTrue
UAT-4356's Targeting of Cisco Firepower Devices2026-04-23TrueCisco TalosTrue
IR Trends Q1 2026: Phishing reemerges as top initial access vector, as attacks targeting public administration persist2026-04-22TrueAliza JohnsonTrue
[Podcast] It's not you, it's your printer: State-sponsored and phishing threats in 20252026-04-21TrueAmy CiminnisiTrue
Phishing and MFA exploitation: Targeting the keys to the kingdom2026-04-21TrueKri DontjeTrue

1–50 of 250