⤷ Title: SmartApeSG Campaign Uncovered: A Deep Dive into NetSupport RAT Distribution and Suspected Threat Actor Connections
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Thu, 06 Feb 2025 01:41:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #FakeUpdate #NetSupport RAT #SmartApeSG
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Thu, 06 Feb 2025 01:41:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #FakeUpdate #NetSupport RAT #SmartApeSG
Cybersecurity News
SmartApeSG Campaign Uncovered: A Deep Dive into NetSupport RAT Distribution and Suspected Threat Actor Connections
Uncover the intricate web of the SmartApeSG FakeUpdate campaign and its connections to NetSupport RAT and other malicious threats.
⤷ Title: Malicious Cisco AnyConnect Ads Target Users with NetSupport RAT
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 09 Feb 2025 00:44:50 +0000
════════════════════════
⌗ Tags: #Malware #Cisco AnyConnect #NetSupport RAT
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 09 Feb 2025 00:44:50 +0000
════════════════════════
⌗ Tags: #Malware #Cisco AnyConnect #NetSupport RAT
Daily CyberSecurity
Malicious Cisco AnyConnect Ads Target Users with NetSupport RAT
Beware of a new malvertising campaign using fake Cisco AnyConnect installers. Learn how attackers are distributing the NetSupport RAT Trojan.
⤷ Title: Booking.com Impersonated in Phishing Campaign Delivering Credential-Stealing Malware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 16 Mar 2025 01:45:37 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #Booking #Booking phishing campaign #ClickFix #DanaBot #Lumma Stealer #NetSupport RAT #Phishing Campaign #Storm_1865 #VenomRAT #XWorm
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 16 Mar 2025 01:45:37 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #Booking #Booking phishing campaign #ClickFix #DanaBot #Lumma Stealer #NetSupport RAT #Phishing Campaign #Storm_1865 #VenomRAT #XWorm
Daily CyberSecurity
Booking.com Impersonated in Phishing Campaign Delivering Credential-Stealing Malware
Stay informed about Booking Phishing schemes. Discover how attackers use social engineering to steal credentials in this campaign.
⤷ Title: Bulletproof Hosting Fuels Russia-Linked Intrusion Sets’ Global Cyber Campaign
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 00:11:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Black Basta #Cactus #LiteManager #Lockbit ransomware #NetSupport Manager #RansomHub #Remcos #sLoad #UAC_0006 #UAC_0050 #Zservers
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 00:11:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Black Basta #Cactus #LiteManager #Lockbit ransomware #NetSupport Manager #RansomHub #Remcos #sLoad #UAC_0006 #UAC_0050 #Zservers
Daily CyberSecurity
Bulletproof Hosting Fuels Russia-Linked Intrusion Sets' Global Cyber Campaign
Learn how UAC-0006 Espionage is linked to Russian cyber operations targeting Ukraine through financial and psychological warfare.
⤷ Title: Alert: Fake DocuSign & Gitcodes Pages Install NetSupport RAT Malware!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:25:35 +0000
════════════════════════
⌗ Tags: #Malware #cyberattack #cybersecurity #Docusign #DomainTools #Gitcodes #malware #NetSupport RAT #phishing #powershell #Remote Access Trojan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:25:35 +0000
════════════════════════
⌗ Tags: #Malware #cyberattack #cybersecurity #Docusign #DomainTools #Gitcodes #malware #NetSupport RAT #phishing #powershell #Remote Access Trojan
Daily CyberSecurity
Alert: Fake DocuSign & Gitcodes Pages Install NetSupport RAT Malware!
A new campaign uses fake DocuSign & Gitcodes pages to trick users into manually installing NetSupport RAT, gaining remote control.
⤷ Title: GrayAlpha’s Expanding Arsenal: FIN7-Aligned Threat Actor Deploys Custom Loaders to Spread NetSupport RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:02:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #7_Zip #Cybercrime #cybersecurity #Fake Browser Updates #FIN7 #GrayAlpha #Insikt Group #NetSupport RAT #powershell #ransomware #Recorded Future #TAG_124 #TDS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:02:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #7_Zip #Cybercrime #cybersecurity #Fake Browser Updates #FIN7 #GrayAlpha #Insikt Group #NetSupport RAT #powershell #ransomware #Recorded Future #TAG_124 #TDS
Daily CyberSecurity
GrayAlpha’s Expanding Arsenal: FIN7-Aligned Threat Actor Deploys Custom Loaders to Spread NetSupport RAT
GrayAlpha, linked to FIN7, escalates tactics with fake browser/7-Zip updates and TAG-124 TDS, spreading NetSupport RAT in a multi-pronged infection campaign.
⤷ Title: NetSupport RAT Returns: Weaponized via WordPress & “ClickFix” for Remote Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:44:44 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Cybereason #cybersecurity #malware #NetSupport Manager #phishing #rat #Remote Access Trojan #social engineering #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:44:44 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Cybereason #cybersecurity #malware #NetSupport Manager #phishing #rat #Remote Access Trojan #social engineering #wordpress
Daily CyberSecurity
NetSupport RAT Returns: Weaponized via WordPress & "ClickFix" for Remote Access
Cybereason exposes a deceptive malware campaign using compromised WordPress sites and the "ClickFix" technique to deliver weaponized NetSupport Manager RAT clients for remote access.
⤷ Title: CastleBot: The New MaaS Framework Fueling Info-Stealer & Ransomware Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 00:25:51 +0000
════════════════════════
⌗ Tags: #Malware #CastleBot #cybersecurity #Infostealer #MaaS #Malware_as_a_Service #NetSupport #ransomware #Trojan #WarmCookie
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 00:25:51 +0000
════════════════════════
⌗ Tags: #Malware #CastleBot #cybersecurity #Infostealer #MaaS #Malware_as_a_Service #NetSupport #ransomware #Trojan #WarmCookie
Daily CyberSecurity
CastleBot: The New MaaS Framework Fueling Info-Stealer & Ransomware Attacks
IBM X-Force has unveiled an in-depth analysis of CastleBot, a newly emerging Malware-as-a-Service (MaaS) framework that is quickly becoming a potent weapon in the cybercrime ecosystem. Designed fo…
⤷ Title: NetSupport RAT Campaign Abuses ClickFix to Infect Hosts; 3 Threat Clusters Use RMM for Covert Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 00:42:07 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #EVALUSION #Multi_Cluster #NetSupport RAT #powershell #Remote Access Trojan #RMM Abuse
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 00:42:07 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #EVALUSION #Multi_Cluster #NetSupport RAT #powershell #Remote Access Trojan #RMM Abuse
Daily CyberSecurity
NetSupport RAT Campaign Abuses ClickFix to Infect Hosts; 3 Threat Clusters Use RMM for Covert Access
eSentire exposed a surge in NetSupport RAT campaigns using the ClickFix social engineering tactic. Three threat clusters leverage a PowerShell loader to bypass AV and gain full remote access via the RMM tool.
⤷ Title: Amatera Stealer Campaign Uses ClickFix to Deploy Malware, Bypassing EDR by Patching AMSI in Memory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 00:10:03 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Stealer #AMSI Bypass #ClickFix #Credential Theft #NetSupport RAT #powershell #Pure Crypter #WoW64 syscalls
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 00:10:03 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Stealer #AMSI Bypass #ClickFix #Credential Theft #NetSupport RAT #powershell #Pure Crypter #WoW64 syscalls
Daily CyberSecurity
Amatera Stealer Campaign Uses ClickFix to Deploy Malware, Bypassing EDR by Patching AMSI in Memory
eSentire’s Threat Response Unit (TRU) has uncovered a widespread malware operation leveraging a deceptive social-engineering technique known as ClickFix to deliver a newly rebranded version of the…