Summary: 2025/04/28 20:23
First reported date: 2009/11/11
Inquiry period : 2025/03/29 20:23 ~ 2025/04/28 20:23 (1 months), 289 search results
전 기간대비 -2% 낮은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는 Update Exploit Software Report attack 입니다.
공격자 UNC5221 도 새롭게 확인됩니다.
공격기술 RCE 도 새롭게 확인됩니다.
기관 및 기업 CrowdStrike 도 새롭게 확인됩니다.
기타 April Artikel Shield Blue 신규 키워드도 확인됩니다.
* 최근 뉴스기사 Top3:
ㆍ 2025/04/28 Gmail für Android und iOS: Google sorgt für mehr Flexibilität und bringt neue Gemini-Funktionen
ㆍ 2025/04/26 Is Detection Engineering just glorified googling?
ㆍ 2025/04/26 Threat Hunting: For what, when, and how?
Trend graph by period
Related keyword cloud
Top 100# | Trend | Count | Comparison |
---|---|---|---|
1 | 289 | ▼ -5 (-2%) | |
2 | Malware | 88 | ▼ -2 (-2%) |
3 | Update | 65 | ▲ 3 (5%) |
4 | Exploit | 56 | ▲ 5 (9%) |
5 | Software | 52 | ▲ 1 (2%) |
6 | Report | 52 | ▲ 5 (10%) |
7 | attack | 43 | ▲ 2 (5%) |
8 | Vulnerability | 43 | ▲ 10 (23%) |
9 | target | 38 | ▼ -3 (-8%) |
10 | Chrome | 38 | ▼ -14 (-37%) |
11 | United States | 38 | ▲ 7 (18%) |
12 | Android | 36 | ▼ -21 (-58%) |
13 | Advertising | 35 | - 0 (0%) |
14 | Campaign | 34 | ▼ -7 (-21%) |
15 | Phishing | 33 | ▲ 8 (24%) |
16 | intelligence | 32 | ▼ -1 (-3%) |
17 | 32 | ▲ 4 (13%) | |
18 | Microsoft | 31 | - 0 (0%) |
19 | Browser | 31 | ▼ -1 (-3%) |
20 | AI | 30 | ▲ 18 (60%) |
21 | Criminal | 25 | ▼ -2 (-8%) |
22 | ZeroDay | 21 | ▲ 2 (10%) |
23 | Victim | 19 | ▼ -7 (-37%) |
24 | Gmail | 18 | ▲ 7 (39%) |
25 | Windows | 18 | ▼ -3 (-17%) |
26 | Mandiant | 17 | ▲ 10 (59%) |
27 | China | 17 | - 0 (0%) |
28 | Operation | 16 | ▼ -6 (-38%) |
29 | threat | 15 | ▲ 10 (67%) |
30 | Remote Code Execution | 15 | ▼ -11 (-73%) |
31 | Government | 14 | ▼ -1 (-7%) |
32 | Kaspersky | 14 | ▼ -8 (-57%) |
33 | Education | 13 | - 0 (0%) |
34 | ChatGPT | 13 | ▼ -10 (-77%) |
35 | RCE | 13 | ▲ new |
36 | Cloud | 13 | ▲ 4 (31%) |
37 | Ransomware | 12 | ▲ 3 (25%) |
38 | Schwachstellen | 12 | ▲ 2 (17%) |
39 | Russia | 12 | ▼ -9 (-75%) |
40 | Lobshot | 12 | ▲ 4 (33%) |
41 | Sicherheitsnews | 11 | ▼ -11 (-100%) |
42 | Password | 11 | ▼ -4 (-36%) |
43 | Mehrere | 11 | ▲ 8 (73%) |
44 | VPN | 11 | ▲ 4 (36%) |
45 | taegliche | 10 | ▼ -8 (-80%) |
46 | hacking | 10 | ▼ -11 (-110%) |
47 | 구글 | 10 | ▲ 7 (70%) |
48 | Zusammenfassung | 10 | ▼ -12 (-120%) |
49 | North Korea | 10 | - 0 (0%) |
50 | von | 10 | ▲ 4 (40%) |
51 | April | 10 | ▲ new |
52 | Googles | 9 | ▼ -1 (-11%) |
53 | Cryptocurrency | 9 | ▲ 1 (11%) |
54 | MFA | 9 | ▲ 4 (44%) |
55 | Last | 9 | ▼ -8 (-89%) |
56 | CISA | 8 | ▲ 6 (75%) |
57 | GoogleCloudNEXT | 8 | ▲ 5 (63%) |
58 | hijack | 8 | - 0 (0%) |
59 | Artikel | 7 | ▲ new |
60 | Gemini | 7 | - 0 (0%) |
61 | Linux | 7 | ▲ 1 (14%) |
62 | Apple | 7 | ▼ -8 (-114%) |
63 | 클라우드 | 7 | ▲ 4 (57%) |
64 | payment | 7 | - 0 (0%) |
65 | GitHub | 7 | ▼ -1 (-14%) |
66 | Vawtrak | 7 | ▲ 2 (29%) |
67 | Ucraina | 6 | ▲ 2 (33%) |
68 | RATel | 6 | ▼ -2 (-33%) |
69 | Europe | 6 | ▲ 1 (17%) |
70 | United Kingdom | 6 | ▲ 3 (50%) |
71 | Backdoor | 6 | ▼ -3 (-50%) |
72 | c&c | 6 | ▼ -5 (-83%) |
73 | search | 6 | ▲ 4 (67%) |
74 | KI | 6 | ▼ -1 (-17%) |
75 | Shield | 6 | ▲ new |
76 | Blue | 6 | ▲ new |
77 | IoC | 6 | ▼ -8 (-133%) |
78 | CrowdStrike | 6 | ▲ new |
79 | MWNEWS | 6 | ▲ 1 (17%) |
80 | amp | 6 | ▲ 3 (50%) |
81 | Amazon | 6 | ▲ 1 (17%) |
82 | Distribution | 5 | ▼ -5 (-100%) |
83 | Patchday | 5 | ▲ 2 (40%) |
84 | UNC5221 | 5 | ▲ new |
85 | model | 5 | ▲ 4 (80%) |
86 | 5 | ▼ -1 (-20%) | |
87 | 5 | ▲ 1 (20%) | |
88 | code | 5 | ▲ 1 (20%) |
89 | Takedown | 5 | ▼ -1 (-20%) |
90 | Telegram | 5 | ▼ -7 (-140%) |
91 | So | 5 | ▲ 3 (60%) |
92 | 5 | - 0 (0%) | |
93 | Japan | 5 | ▲ 3 (60%) |
94 | Social Engineering | 4 | - 0 (0%) |
95 | Canada | 4 | ▲ 2 (50%) |
96 | big | 4 | - 0 (0%) |
97 | South Korea | 4 | - 0 (0%) |
98 | Iran | 4 | ▲ 1 (25%) |
99 | DNS | 4 | ▲ 2 (50%) |
100 | Java | 4 | - 0 (0%) |
Special keyword group
Top 5
Malware Type
This is the type of malware that is becoming an issue.
Keyword | Average | Label |
---|---|---|
Ransomware |
|
12 (30%) |
Lobshot |
|
12 (30%) |
Vawtrak |
|
7 (17.5%) |
RATel |
|
6 (15%) |
GootLoader |
|
3 (7.5%) |

Attacker & Actors
The status of the attacker or attack group being issued.
Keyword | Average | Label |
---|---|---|
UNC5221 |
|
5 (100%) |

Technique
This is an attack technique that is becoming an issue.
Keyword | Average | Label |
---|---|---|
Exploit |
|
56 (29.6%) |
Campaign |
|
34 (18%) |
Phishing |
|
33 (17.5%) |
Remote Code Execution |
|
15 (7.9%) |
RCE |
|
13 (6.9%) |

Country & Company
This is a country or company that is an issue.
Keyword | Average | Label |
---|---|---|
|
289 (56.1%) | |
United States |
|
38 (7.4%) |
Microsoft |
|
31 (6%) |
Mandiant |
|
17 (3.3%) |
China |
|
17 (3.3%) |
Threat info
Last 5SNS
(Total : 75)Google Exploit attack Update Chrome Android Advertising Criminal Email Malware Attacker Browser Phishing ZeroDay Report Vulnerability hijack Campaign Microsoft target Victim Mandiant Gmail Lobshot Hijacking Apple payment Windows GootLoader Vawtrak Intelligence Ucraina Takedown Government PayPal Stealer targeted Russia Kaspersky ...
News
(Total : 214)Google Malware Update Software Report Exploit Vulnerability United States target attack intelligence Attacker Chrome Android Campaign Advertising Phishing Email Microsoft Browser Criminal China Operation Victim ZeroDay Windows Remote Code Execution Gmail RCE Mandiant Kaspersky Ransomware Government ChatGPT Education Russia VPN Password 구글 hacking Cryptocurrency North Korea MFA Lobshot CISA GitHub Linux United Kingdom RATel Amazon IoC c&c Backdoor Distribution Facebook Telegram Japan Vawtrak CrowdStrike UNC5221 Europe LinkedIn WhatsApp Apple DNS Banking payment Microsoft Edge Social Engineering Canada DDoS South Korea Ucraina Java Zero Trust ...
No | Title | Date |
---|---|---|
1 | Gmail für Android und iOS: Google sorgt für mehr Flexibilität und bringt neue Gemini-Funktionen - IT Sicherheitsnews | 2025.04.28 |
2 | 뷰소닉, 구글TV 내장 스마트 포터블 빔프로젝터 ‘M1 Max’ 한국 시장 신출 - 데일리시큐 | 2025.04.28 |
3 | Pete Hegseth’s Signal Scandal Spirals Out of Control - Security Latest- WIRED | 2025.04.26 |
4 | Is Detection Engineering just glorified googling? - Malware.News | 2025.04.26 |
5 | Threat Hunting: For what, when, and how? - Malware.News | 2025.04.26 |
Additional information
No | Title | Date |
---|---|---|
1 | Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries - Malware.News | 2025.04.28 |
2 | 28th April – Threat Intelligence Report - Malware.News | 2025.04.28 |
3 | Navigating Through The Fog - Malware.News | 2025.04.28 |
4 | Huawei Set to Test Powerful AI Chip to Rival Nvidia’s, WSJ Says - Bloomberg Technology | 2025.04.28 |
5 | Gamers Beware! New Attack Targets Gamers to Deploy AgeoStealer Malware - Malware.News | 2025.04.26 |
View only the last 5 |
No | Title | Date |
---|---|---|
1 | Gmail für Android und iOS: Google sorgt für mehr Flexibilität und bringt neue Gemini-Funktionen - IT Sicherheitsnews | 2025.04.28 |
2 | 뷰소닉, 구글TV 내장 스마트 포터블 빔프로젝터 ‘M1 Max’ 한국 시장 신출 - 데일리시큐 | 2025.04.28 |
3 | Pete Hegseth’s Signal Scandal Spirals Out of Control - Security Latest- W... | 2025.04.26 |
4 | Is Detection Engineering just glorified googling? - Malware.News | 2025.04.26 |
5 | Is Detection Engineering just glorified googling? - Malware.News | 2025.04.26 |
View only the last 5 |
Level | Description |
---|---|
warning | File has been identified by 27 AntiVirus engines on VirusTotal as malicious |
watch | Drops a binary and executes it |
watch | Found URLs in memory pointing to an IP address rather than a domain (potentially indicative of Command & Control traffic) |
watch | One or more non-whitelisted processes were created |
watch | Requests access to read memory contents of lsass.exe potentially indicative of credential dumping |
watch | Resumed a suspended thread in a remote process potentially indicative of process injection |
notice | A process created a hidden window |
notice | Allocates read-write-execute memory (usually to unpack itself) |
notice | An application raised an exception which may be indicative of an exploit crash |
notice | Creates (office) documents on the filesystem |
notice | Creates a shortcut to an executable file |
notice | Creates a suspicious process |
notice | Creates executable files on the filesystem |
notice | Drops an executable to the user AppData folder |
notice | One or more potentially interesting buffers were extracted |
notice | Potentially malicious URLs were found in the process memory dump |
notice | Queries the disk size which could be used to detect virtual machine with small fixed size or dynamic allocation |
notice | Starts servers listening |
notice | Steals private information from local Internet browsers |
notice | Yara rule detected in process memory |
info | Checks amount of memory in system |
info | Checks if process is being debugged by a debugger |
info | One or more processes crashed |
info | Tries to locate where the browsers are installed |