OpenClaw GitHub Ghosts: How Fake Repositories Delivered the GhostSocks Infostealer
Open-source ecosystems thrive on trust. Developers regularly pull code, clone repositories, and run tools from platforms like…
continue reading..
Botnet Goes Immortal: “Aeternum C2” Hides Its Commands on the Polygon Blockchain, Evading Global Takedowns
What Happened On February 26, 2026, security researchers disclosed a botnet loader named Aeternum C2 that uses…
continue reading..
Security Researchers Uncover New GuLoader Obfuscation Tricks Designed to Evade Sandboxes and Static Analysis
GuLoader (also known in some reports as CloudEye) is a highly obfuscated malware downloader first observed in…
continue reading..
Russian APT28 Hackers Weaponize New Microsoft Office Flaw Within Hours, Launch Silent Espionage Blitz Across Europe and Middle East
APT28 “Operation Phantom Net Voxel” Incident Window: February 4–5Threat Actor: APT28Motivation: Strategic cyber-espionageConfidence Level: High Executive Summary…
continue reading..
GlassWorm Malware Slips Into Open VSX After Suspected Developer Account Takeover, Infecting Trusted VS Code Extensions
A sophisticated supply-chain attack campaign has recently been uncovered in the open-source ecosystem, leveraging trusted Visual Studio…
continue reading..
Arsink RAT Emerges as a Major Android Threat, Exploiting Trusted Cloud Services Worldwide
In early 2026, researchers uncovered a widespread Android malware campaign that stands out for its scale, sophistication,…
continue reading..
Open-Source Malware AsyncRAT Exposed: Researchers Uncover Dozens of Live Command-and-Control Servers Across the Internet
The remote access trojan known as AsyncRAT has steadily become a cornerstone of commodity malware activity on…
continue reading..
Android Spyware Masquerading as Dating App Used in Pakistan Surveillance Campaign
ESET researchers have uncovered an Android spyware campaign that leverages romance scam tactics to target individuals in…
continue reading..
Mustang Panda APT Uses CoolClient Backdoor to Deliver Credential-Stealing Malware
Mustang Panda — also tracked by some researchers as HoneyMyte (and sometimes linked to China-associated espionage activity)…
continue reading..
