QLNX is designed for stealth and long-term persistence, operating in-memory and employing multiple techniques to evade detection,...
malware
An active malware distribution campaign abusing two prominent AI platforms Hugging Face and ClawHub to deliver trojans,...
The purported ransomware attack did not encrypt files and used infrastructure tied to MuddyWater.
The attack involved tampering with three core DAEMON Tools components: DTHelper.exe, DiscSoftBusServiceLite.exe, and DTShellHlp.exe.
The Pheno plugin monitors active Phone Link connections to eavesdrop on texts and notifications.
Kaspersky reported that the campaign utilized phishing emails styled as official notices regarding tax audits, prompting users...
The FEMITBOT platform facilitates various scams, including fake cryptocurrency, financial services, AI tools, and streaming sites.
The attackers gained initial access by abusing the scriptText endpoint of the Jenkins server, achieving remote code...
The campaign, attributed to the GitHub account "BufferZoneCorp," involved malicious Ruby gems and Go modules disguised as...
More sophisticated EtherRAT malware variant delivered via trojanized installer Threat actors have leveraged a malicious copy of...