logo

US Threat Landscape Alert: 30 Active Malware Families Ranked by Real Sandbox Data

ID: fde7a9c8-d2b8-52df-a583-faa6dbe74521

STIX ID: report--fde7a9c8-d2b8-52df-a583-faa6dbe74521

Feed Name: ANY.RUN's Cybersecurity Blog

Threat Score
80/100

Date Published: 2026-07-09

Date Updated: 2026-07-20

Author: ANY.RUN

...
...

This ANY.RUN Malware Trends Tracker report ranks the top 30 active malware families impacting US organizations based on real sandbox submission volume, calling out a surge in phishing-as-a-service (AiTM and device-code OAuth token theft) that undermines MFA, the persistent circulation of commodity RATs and stealers, and the ongoing presence of legacy threats like Emotet and WannaCry; it urges SOCs to treat loaders, beacons, and session-token theft as early ransomware indicators and to adopt interactive sandboxing plus threat intelligence feeds for rapid detection and blocking.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.