ChainScript RAT arriva tramite ClickFix, usa Node.js e un contratto Polygon per risolvere dinamicamente il C2 e mantenere accesso remoto persistente.
Blackpoint uncovers ChainScript, a Node.js RAT that queries a Polygon smart contract to find and rotate its command server.
Blackpoint Cyber found ChainScript, a Node.js RAT spread through fake Spotify, Zoom and Teams installers that uses Polygon smart contracts to locate its C2 server.
ClickFix lures deliver the ChainScript RAT, which uses a Polygon smart contract to locate active WebSocket ...
Windows向け情報窃取マルウェア「Rapuncel」を配布するキャンペーンが確認された。攻撃では、Microsoftの認証を受けたカーネルドライバーを利用し、ウイルス対策ソフトやEDRに関連する145のプロセスを停止させたうえで、ブラウザーの認証情報や暗号資産ウォレットのデータなどを収集する。
Rapuncel infostealer campaign stole browser passwords and crypto wallet data from Windows users after a Microsoft-signed kernel driver killed 145 antivirus and EDR tools -- the same driver that scored ...
Welcome to the swamp of programming languagesAbout the authorA kemomimi (animal ears) enthusiast who mainly inhabits VRChat ...
เตือนภัย มัลแวร์ ClickFix ปลอมเป็น CAPTCHA หลอกเหยื่อกด Win+R รันคำสั่งผ่าน PowerShell แอบขโมยรหัสผ่านและคุกกี้ไปแบบไม่รู้ตัว ...
The 'MovieReaper' malware has infected hundreds of users, according to antivirus provider Kaspersky, which traced the attack ...
O malware bancário KREMLIN utiliza contratos inteligentes Ethereum e extensões maliciosas para sequestrar o Chrome e Edge no Brasil. Veja como funciona.