Summary: 2025/05/02 13:11
First reported date: 2015/01/08
Inquiry period : 2025/04/02 13:11 ~ 2025/05/02 13:11 (1 months), 5 search results
전 기간대비 80% 높은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는 Steal 입니다.
기타 Cryptocurrency PyPI Malicious Python Didnt 등 신규 키워드도 확인됩니다.
* 최근 뉴스기사 Top3:
ㆍ 2025/04/23 Ripple's xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack
ㆍ 2025/04/17 This CEO Wants You to Know He Didn’t Steal Money While Cooking the Books
ㆍ 2025/04/05 Malicious Python Packages on PyPI Downloaded 39,000+ Times, Steal Sensitive Data
Trend graph by period
Related keyword cloud
Top 100# | Trend | Count | Comparison |
---|---|---|---|
1 | Steal | 5 | ▲ 4 (80%) |
2 | Cryptocurrency | 3 | ▲ new |
3 | PyPI | 2 | ▲ new |
4 | Malicious | 2 | ▲ new |
5 | Python | 2 | ▲ new |
6 | Didnt | 1 | ▲ new |
7 | npm | 1 | ▲ new |
8 | js | 1 | ▲ new |
9 | Ripple | 1 | ▲ new |
10 | Supply chain | 1 | ▲ new |
11 | attack | 1 | - 0 (0%) |
12 | Software | 1 | ▲ new |
13 | Backdoor | 1 | - 0 (0%) |
14 | Java | 1 | ▲ new |
15 | Books | 1 | ▲ new |
16 | Money | 1 | ▲ new |
17 | Hathaways | 1 | ▲ new |
18 | CEO | 1 | ▲ new |
19 | Report | 1 | ▲ new |
20 | Breach | 1 | ▲ new |
21 | NetJets | 1 | ▲ new |
22 | Berkshire | 1 | ▲ new |
23 | 1 | ▲ new | |
24 | GitHub | 1 | ▲ new |
25 | Malware | 1 | ▲ new |
26 | Fake | 1 | ▲ new |
27 | Packages | 1 | ▲ new |
28 | Package | 1 | ▲ new |
Special keyword group
Top 5
Malware Type
This is the type of malware that is becoming an issue.
No data.

Attacker & Actors
The status of the attacker or attack group being issued.
Keyword | Average | Label |
---|

Technique
This is an attack technique that is becoming an issue.
Keyword | Average | Label |
---|---|---|
Backdoor |
|
1 (100%) |

Country & Company
This is a country or company that is an issue.
No data.
Threat info
Last 5SNS
(Total : 1)Cryptocurrency Malware Attacker GitHub
News
(Total : 4)Cryptocurrency Supply chain attack Software Backdoor Java Report Email
No | Title | Date |
---|---|---|
1 | Ripple's xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack - The Hacker News | 2025.04.23 |
2 | This CEO Wants You to Know He Didn’t Steal Money While Cooking the Books - Bloomberg Technology | 2025.04.17 |
3 | Hackers Breach Berkshire Hathaway’s NetJets, Steal Client Data - Bloomberg Technology | 2025.04.10 |
4 | Malicious Python Packages on PyPI Downloaded 39,000+ Times, Steal Sensitive Data - The Hacker News | 2025.04.05 |
Additional information
No | Title | Date |
---|---|---|
1 | xAI Dev Leaks API Key for Private SpaceX, Tesla LLMs - Malware.News | 2025.05.02 |
2 | Top NSC official wants to normalize offensive hacking as tool of US might - Malware.News | 2025.05.02 |
3 | Widespread Fortune 500 firm infiltration conducted by North Koreans - Malware.News | 2025.05.02 |
4 | Third-party breach compromises Ascension Health patient data - Malware.News | 2025.05.02 |
5 | Multi-stage malware attacks launched by Nebulous Mantis APT - Malware.News | 2025.05.02 |
View only the last 5 |
No | Title | Date |
---|---|---|
1 | Cybercriminals Allegedly Used a StubHub Backdoor to Steal Taylor Swift Tickets - Security Latest- W... | 2025.03.08 |
2 | Chinese Hackers Use CloudScout Toolset to Steal Session Cookies from Cloud Services - The Hacker News | 2024.10.29 |
3 | Hackers Could Exploit Microsoft Teams on macOS to Steal Data - HACKREAD | 2024.08.20 |
4 | Hackers Could Exploit Microsoft Teams on macOS to Steal Data - HACKREAD | 2024.08.20 |
5 | Hackers Steal Phone, SMS Records for Nearly All AT&T Customers - Palada | 2024.07.13 |
View only the last 5 |
Level | Description |
---|---|
warning | File has been identified by 27 AntiVirus engines on VirusTotal as malicious |
watch | Drops a binary and executes it |
watch | Found URLs in memory pointing to an IP address rather than a domain (potentially indicative of Command & Control traffic) |
watch | One or more non-whitelisted processes were created |
watch | Requests access to read memory contents of lsass.exe potentially indicative of credential dumping |
watch | Resumed a suspended thread in a remote process potentially indicative of process injection |
notice | A process created a hidden window |
notice | Allocates read-write-execute memory (usually to unpack itself) |
notice | An application raised an exception which may be indicative of an exploit crash |
notice | Creates (office) documents on the filesystem |
notice | Creates a shortcut to an executable file |
notice | Creates a suspicious process |
notice | Creates executable files on the filesystem |
notice | Drops an executable to the user AppData folder |
notice | One or more potentially interesting buffers were extracted |
notice | Potentially malicious URLs were found in the process memory dump |
notice | Queries the disk size which could be used to detect virtual machine with small fixed size or dynamic allocation |
notice | Starts servers listening |
notice | Steals private information from local Internet browsers |
notice | Yara rule detected in process memory |
info | Checks amount of memory in system |
info | Checks if process is being debugged by a debugger |
info | One or more processes crashed |
info | Tries to locate where the browsers are installed |