ClickFix lures deliver the ChainScript RAT, which uses a Polygon smart contract to locate active WebSocket ...
Rapuncel infostealer campaign stole browser passwords and crypto wallet data from Windows users after a Microsoft-signed ...
UTA0560 exploited a Chrome-Windows zero-day chain against NGOs to deploy GRIMWEDGE; APT31 used the same chain to install LONGTALE.
Windows向け情報窃取マルウェア「Rapuncel」を配布するキャンペーンが確認された。攻撃では、Microsoftの認証を受けたカーネルドライバーを利用し、ウイルス対策ソフトやEDRに関連する145のプロセスを停止させたうえで、ブラウザーの認証情報や暗号資産ウォレットのデータなどを収集する。
Blackpoint uncovers ChainScript, a Node.js RAT that queries a Polygon smart contract to find and rotate its command server.
HP Wolf Security analizza nuove minacce: falsi agenti AI, furto di wallet crypto, quishing e malware modulari sempre più ...
ChainScript RAT arriva tramite ClickFix, usa Node.js e un contratto Polygon per risolvere dinamicamente il C2 e mantenere accesso remoto persistente.
Cybercriminals are combining fake Google CAPTCHA prompts WebDAV-hosted DLLs malicious Cloudflare Workers and BNB Smart Chain contracts in a multi-stage ...
Security researchers have uncovered a Brazilian banking-malware operation named KREMLIN that secretly installs malicious extensions in ...
APT31 e UTA0560 sfruttano il patch gap di Chromium: tre exploit concatenati trasformano un link in compromissione completa di ...