Antino backdoor abuses Microsoft 365, using Outlook and OneDrive for C2, data theft and persistent access to Windows systems.
CloudSyncD macOS backdoor uses a fake Zoom installer to steal Mac passwords, bypass Gatekeeper and connect infected devices ...
Cisco Talos has uncovered a China-nexus cyber-espionage campaign that compromised approximately 350 endpoints across eight ...
Security firm Huntress has reported a new attack campaign exploiting ChatGPT's custom GPT feature to infect users with remote access trojans ...
Microsoft says phishing attacks abuse MSP360 and ScreenConnect to maintain redundant remote access on compromised Windows endpoints.
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting ...
ChatGPT malware campaign plants a fake model on OpenAI’s real chatgpt.com, directing Windows users to a ClickFix PowerShell lure that delivers an 8-stage remote access trojan with full surveillance ...
SectopRAT hides inside tampered Windows software, giving attackers remote control and the ability to steal sensitive data.
Justine Tunney, known online as “jart,” has built a career around compact, portable systems software. After programming as a ...
Microsoft observed phishing campaigns that abused MSP360 RMM to deploy ScreenConnect, creating redundant remote-access channels for follow-on activity ...
Microsoft is taking Windows Subsystem for Linux beyond just running Linux distributions, as WSL Containers is now generally ...