Russian Gamaredon APT targeting Ukraine with malicious LNK files in new Remcos campaign
The malicious LNK files are disguised as legitimate files, with filenames using Russian terms related to military movements in Ukraine.
The malicious LNK files are disguised as legitimate files, with filenames using Russian terms related to military movements in Ukraine.
RESURGE has capabilities similar to the SPAWNCHIMERA malware variant, albeit with several differences.
In brief: Google patches a Chrome zero-day bug, MMC zero-day bug linked to EncryptHub attacks, and more.
The service offers pre-configured modules that specifically target major online platforms.
The two versions come with upgrades in both architecture and functionality.
Edward Coristine ran a company named DiamondCDN, which allegedly provided vital infrastructure services to cybercrime group EGodly.
CVE-2025-2783 works in conjunction with a remote code execution exploit, which has yet to be identified.
According to DTI's findings, the infrastructure involves a set of mail servers, each operating a network of spoofed domains.
The malware’s attack chains have evolved to include various distribution methods.
The attack, named ‘MSC EvilTwin,’ leverages .msc files and MUIPath to download and execute malicious payload.
Showing elements 911 - 920