Vshell: Chinese-Language C2 Framework Emerges as Cobalt Strike Alternative in Active Threat Campaigns
Vshell is a remote administration tool written in Go that offers comprehensive post-compromise features such as network…
continue reading..
Belarusian KGB Deploys “ResidentBat” Android Spyware in Targeted Physical Device Seizures
A newly documented Android spyware family called ResidentBat has been attributed to Belarus’s State Security Committee (KGB),…
continue reading..
Threat Actor UAT-8616 Targets Enterprise Networks via SD-WAN Flaw
Cisco Talos reports that a highly sophisticated cyber threat actor, tracked as UAT-8616, is actively exploiting a…
continue reading..
“Oblivion” Android RAT Sold for $300 Bypasses Major Phone Security, Targets Devices Running Android 8–16
A powerful new Android Remote Access Trojan (RAT) called Oblivion has recently appeared, and cybersecurity researchers at…
continue reading..
Microsoft Uncovers Developer-Targeted Campaign Using Malicious Next.js Repositories for C2 Operations
Microsoft Defender Experts and the Microsoft Defender Security Research Team have uncovered a coordinated cyber campaign that…
continue reading..
Agent Tesla Campaign Uses File-Hosting Services and In-Memory Loaders to Evade Detection
Agent Tesla continues to be a dominant threat in the cyber landscape, due to its adaptability, simplicity…
continue reading..
Russian Cybercrime Ring “Diesel Vortex” Exposed After Targeting US and EU Freight Firms in Large-Scale Phishing Campaign
Researchers from Have I Been Squatted, working with Ctrl-Alt-Intel, uncovered a highly organised criminal phishing operation in…
continue reading..
U.S. Sanctions Russian Cyber Broker for Buying Stolen U.S. Defense Hacking Tools
The U.S. government has slapped sanctions on a Russian cyber-exploit broker that bought stolen hacking tools from…
continue reading..
U.S. Treasury Department Sanctions Matrix LLC and Owner Sergey Sergeyevich Zelenyuk Over Stolen Zero-Day Sales
The U.S. Treasury Department has slapped sanctions on a Russian cyber-exploit broker and several people tied to…
continue reading..
