Iranian MuddyWater hackers plant Dindoor backdoor in US company networks
The malware uses the Deno runtime environment to execute malicious commands on compromised systems.
The campaign, observed in February 2026, directs users to launch Windows Terminal using the Windows + X u2192 I shortcut.
The malware uses the Deno runtime environment to execute malicious commands on compromised systems.
In brief: Cisco warns of two actively exploited flaws in Catalyst SD-WAN Manager, researchers details a new iOS exploit kit called u2018Coruna,u2019 and more.
Authorities seized and took offline 330 domains used by Tycoon2FA.
In addition to Cobalt Strike, Silver Dragon deploys a suite of custom post-exploitation tools, including SilverScreen, SSHcmd, and the GearDoor backdoor.
The toolkit contains 23 exploits grouped into five exploit chains and can target iPhones running iOS 13.0 through iOS 17.2.1.
The email abuses the widely used Ukrainian email provider ukr[.]net to make it more believable.