 | Dragon Breath (APT-Q-27): RONINGLOADER and Gh0st RAT Explained | 2026-08-12 | True | [email protected] (Umut Bayram) | True | | |
 | Gunra Ransomware: Multithreaded ChaCha20 Encryption Explained | 2026-08-11 | True | [email protected] (Umut Bayram) | True | | |
 | Dropping Elephant (Patchwork): Espionage APT Tactics and Tools | 2026-08-06 | True | [email protected] (Umut Bayram) | True | | |
 | Meeting Singapore's 2026 CCoP Requirements With Picus | 2026-08-04 | True | [email protected] (Umut Bayram) | True | | |
 | Minnesota Water Systems Attacks: Internet-Exposed PLCs Under Attack | 2026-08-03 | True | [email protected] (Umut Bayram) | True | | |
 | Machine-Speed Attacks: Lessons From the Hugging Face Intrusion | 2026-07-30 | True | [email protected] (Umut Bayram) | True | | |
 | HOLLOWGRAPH Backdoor Turns Microsoft 365 Calendars Into a C2 Channel | 2026-07-29 | True | [email protected] (Umut Bayram) | True | | |
 | CVE-2026-31635 (DirtyDecrypt) Linux Kernel Privilege Escalation Explained | 2026-07-29 | True | [email protected] (Umut Bayram) | True | | |
 | INC Ransomware Explained: How It Attacks Healthcare and Education | 2026-07-29 | True | [email protected] (Umut Bayram) | True | | |
 | Astaroth (Guildma) Uses Steganography and Ngrok for C2 Resilience | 2026-07-28 | True | [email protected] (Umut Bayram) | True | | |
 | FrigidStealer Explained: macOS Infostealer and Gatekeeper Bypass | 2026-07-27 | True | [email protected] (Umut Bayram) | True | | |
 | Vidar Malware: How the Multithreaded Windows Stealer Works | 2026-07-27 | True | [email protected] (Umut Bayram) | True | | |
 | The Day an AI Cheated on Its Exam by Hacking Another Company | 2026-07-23 | True | [email protected] (Umut Bayram) | True | | |
 | CVE-2026-63030 and CVE-2026-60137 (wp2shell): WordPress RCE Explained | 2026-07-20 | True | [email protected] (Umut Bayram) | True | | |
 | UNC2891 Bank Heist Explained: CAKETAP Rootkit and Raspberry Pi Attack | 2026-05-22 | True | [email protected] (Umut Bayram) | True | | |
 | DeepLoad Malware Explained: ClickFix Delivery and Password Stealing | 2026-05-22 | True | [email protected] (Umut Bayram) | True | | |
 | Fragnesia CVE-2026-46300: Linux Kernel LPE Vulnerability Explained | 2026-05-21 | True | [email protected] (Umut Bayram) | True | | |
 | What Is an Insider Threat? | 2026-05-21 | True | [email protected] (Umut Bayram) | True | | |
 | Revisiting Voldemort, HealthKick, and GOVERSHELL: A Technical Retrospective | 2026-05-20 | True | [email protected] (Umut Bayram) | True | | |
 | Dirty Frag LPE: CVE-2026-43284 and CVE-2026-43500 Deep Dive | 2026-05-20 | True | [email protected] (Umut Bayram) | True | | |
 | NGINX Rift: CVE-2026-42945 Critical Heap Buffer Overflow Vulnerability Explained | 2026-05-14 | True | Huseyin Can YUCEEL | True | | |
 | CVE-2026-21509: APT28 Exploits Microsoft Office Zero-day Vulnerability | 2026-02-04 | True | Huseyin Can YUCEEL | True | | |
 | Is Babuk Back? Uncovering the Truth Behind Babuk Locker 2.0 | 2026-02-03 | True | [email protected] (Umut Bayram) | True | | |
 | MITRE ATT&CK T1078 Valid Accounts Explained | 2026-02-03 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | How NetSupport RAT Abuses Legitimate Remote Admin Tool | 2026-01-29 | True | [email protected] (Umut Bayram) | True | | |
 | HardBit 4.0 Ransomware Analysis | 2025-12-20 | True | Picus Labs | True | | |
 | Omnissa Workspace One CVE-2025-25231 Path Traversal Exploit | 2025-12-19 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Olymp Loader: Emerging Malware-as-a-Service Threat in 2025 | 2025-11-25 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | APT41 Cyber Attacks: History, Operations, and Full TTP Analysis | 2025-11-24 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Fog Ransomware 2025: Deep Dive into TTPs | 2025-11-24 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Inside Sandworm: Decade of Cyber Sabotage and Espionage Activity | 2025-11-19 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | FortiWeb CVE-2025-64446 Vulnerability: Path Traversal Leads to Remote Code Execution | 2025-11-17 | True | Huseyin Can YUCEEL | True | | |
 | DEV-1084 and MERCURY: Inside Iran’s DarkBit Ransomware Operations | 2025-11-12 | True | Picus Labs | True | | |
 | MalKamak APT’s ShellClient RAT: Inside Operation GhostShell | 2025-11-11 | True | Picus Labs | True | | |
 | CVE-2025-59287 Explained: WSUS Unauthenticated RCE Vulnerability | 2025-10-25 | True | Picus Labs | True | | |
 | Predatory Sparrow: Inside the Cyber Warfare Targeting Iran's Critical Infrastructure | 2025-10-25 | True | Picus Labs | True | | |
 | FIN7 Cybercrime Group: Evolution from POS Attacks to Ransomware-as-a-Service (RaaS) Operations | 2025-10-24 | True | Picus Labs | True | | |
 | XWorm Rises Again: Dissecting the Modular Malware's V6 Resurrection | 2025-10-23 | True | Picus Labs | True | | |
 | Earth Krahang APT Group: Global Government Cyberespionage Campaigns (2022–2024) and TTP Analysis | 2025-10-23 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Storm-2603 Ransomware Campaign Targets Microsoft SharePoint in 2025: Activity and TTP Analysis | 2025-10-22 | True | Huseyin Can YUCEEL | True | | |
 | WARMCOOKIE: A Technical Deep Dive into a Persistent Backdoor's Evolution | 2025-10-22 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | New Rust Malware "ChaosBot" Leverages Discord for Stealthy Command and Control | 2025-10-21 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | BRICKSTORM Malware: UNC5221 Targets Tech and Legal Sectors in the United States | 2025-09-25 | True | Huseyin Can YUCEEL | True | | |
 | Malicious Listeners in Ivanti EPMM: How CVE-2025-4427 and CVE-2025-4428 Created Backdoors | 2025-09-19 | True | Huseyin Can YUCEEL | True | | |
 | Explaining the AI-Assisted Koske Linux Cryptomining Malware Hidden in JPEGs | 2025-08-29 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | CISA Alert AA25-239A: Analysis, Simulation, and Mitigation of Chinese APTs | 2025-08-28 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Breaking Down Mustang Panda’s Windows Endpoint Campaign | 2025-08-26 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | RingReaper Linux Malware: EDR Evasion Tactics and Technical Analysis | 2025-08-14 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | Raspberry Robin Malware in 2025: From USB Worm to Elite Initial Access Broker | 2025-08-13 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |
 | UNC3886 Tactics, Techniques, and Procedures: Full Technical Breakdown | 2025-08-12 | True | [email protected] (Sıla Özeren Hacıoğlu) | True | | |