malware analysis

HZ Rat Attacking macOS Users Via Messaging Platform WeChat

Hackers target macOS as its growing user base makes it an increasingly attractive target.  Despite its reputation for strong security,…

2 years ago

Stealthy Memory Malware PEAKLIGHT Attack Windows Using Microsoft Shortcut File (LNK)

Cybersecurity analysts at Mandiant recently identified a stealthy memory malware dubbed "PEAKLIGHT." A Stealth memory malware is often referred to…

2 years ago

New UULoader Attacking Users Via Weaponized PDF Documents

Malicious .msi installers disguised as legitimate software actively target Korean and Chinese speakers by dubbing UULoader, contain a loader likely…

2 years ago

RHADAMANTHYS Stealer Weaponizing RAR Archive To Steal Login Credentials

A newly surfaced cybercampaign targeting Israeli users has thrust the sophisticated RHADAMANTHYS information stealer into the spotlight. Originating from Russian-speaking…

2 years ago

Network Admins Beware! SharpRhino Ransomware Attacking Mimic As Angry IP Scanner

Hunters International has deployed a novel C# malware dubbed SharpRhino as an initial infection vector and persistent Remote Access Trojan…

2 years ago

Threat Actor Groups Using Leaked Ransomware Variants To Launch Attacks

Ransomware operators often acquire malware through purchases on the dark web, group affiliations, and leaked source codes rather than developing…

2 years ago

DEV#POPPER Attacking developers via New Social Engineering Tactics

Threat actors masquerade as interviewers and send a ZIP file (onlinestoreforhirog.zip) to candidates as part of a fake interview, which…

2 years ago

Operation ShadowCat Using Weaponized Office document To Attack Users In India

Researchers identified a new attack campaign ("Operation ShadowCat") using malicious LNK files distributed via spam emails, which triggers a PowerShell…

2 years ago

Beware Of Malicious Chrome Installer From Chinese Hackers

A malicious Chrome installer, ChromeSetup.msi, distributed via drive-by download, delivers a novel Gh0st RAT variant, dubbed Gh0stGambit, that evasively retrieves…

2 years ago

Patchwork Hackers Upgraded Their Arsenal With Advanced PGoShell

Advanced Threat Intelligence Team, Knownsec 404 has recently discovered a potential Bhutan-targeted attack by the Patchwork group that has employed…

2 years ago