The Threat Codex

The Threat Codex is a website that tracks news articles on threat actors, malware, and vulnerabilities.

2025-12-11

React2Shell: Technical Deep-Dive & In-the-Wild Exploitation of CVE-2025-55182
#CVE_2025_55182
wiz.io/blog/nextjs-cve-2025-55

2025-12-11

Threat Spotlight: Storm-0249 Moves from Mass Phishing to Precision EDR Exploitation
#Storm_0249
reliaquest.com/blog/threat-spo

2025-12-10

Telegram Passkeys: End of OTP Authentication
#Telegram
corbado.com/blog/telegram-pass

2025-12-10

Threat Spotlight: Introducing GhostFrame, a new super stealthy phishing kit
#GhostFrame
blog.barracuda.com/2025/12/04/

2025-12-08
2025-12-08

SEEDSNATCHER : Dissecting an Android Malware Targeting Multiple Crypto Wallet Mnemonic Phrases
#SEEDSNATCHER
cyfirma.com/research/seedsnatc

2025-12-06

Dangerous Invitations: Russian Threat Actor Spoofs European Security Events in Targeted Phishing Attacks
#UTA0355
volexity.com/blog/2025/12/04/d

2025-12-05

Unveiling WARP PANDA: A New Sophisticated China-Nexus Adversary
#WarpPanda #Junction #GuestConduit
crowdstrike.com/en-us/blog/war

2025-12-03

French NGO Reporters Without Borders targeted by Calisto in recent campaign
#Calisto
blog.sekoia.io/ngo-reporters-w

2025-12-02

Russia limits WhatsApp use, claiming it enables terrorism, crime, espionage
#WhatsApp
therecord.media/russia-whatsap

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst