⤷ Title: New “TencShell” Malware Weaponizes Open-Source Rshell via Third-Party Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 18 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Malware #C2 Framework #Cato CTRL #Cyber Security #Donut Shellcode #infosec #Malware Analysis #Rshell #supply chain attack #TencShell #third_party risk #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 18 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Malware #C2 Framework #Cato CTRL #Cyber Security #Donut Shellcode #infosec #Malware Analysis #Rshell #supply chain attack #TencShell #third_party risk #threat intelligence
Daily CyberSecurity
New "TencShell" Malware Weaponizes Open-Source Rshell via Third-Party Access
Cato CTRL intercepts "TencShell," a new stealth malware derived from open-source Rshell. Attackers use third-party access to breach networks!
⤷ Title: China-Linked Hackers Deploy “TencShell” Backdoor via Faux Web Font Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
Information Security News
China-Linked Hackers Deploy "TencShell" Backdoor via Faux Web Font Files - Information Security News
In April 2026, threat intelligence specialists at Cato CTRL neutralized a sophisticated network intrusion attempt targeting a major multinational manufacturing enterprise. The adversaries sought to establish a persistent foothold within the corporate perimeter…