⤷ Title: New FileFix Attack: Hiding Malware in Plain Sight
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 04:23:25 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #cybersecurity #Doppel #FileFix #malware #phishing #Social Engineering #StealC #Steganography #Threat Actors
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 04:23:25 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #cybersecurity #Doppel #FileFix #malware #phishing #Social Engineering #StealC #Steganography #Threat Actors
Penetration Testing Tools
New FileFix Attack: Hiding Malware in Plain Sight
A new FileFix campaign is tricking users into pasting malicious commands into file upload windows to deliver the StealC data stealer.
⤷ Title: TamperedChef Campaign Uses Forged Certificates to Distribute Malware via Fake Installers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 23 Nov 2025 03:21:10 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #cybercrime #EvilAI #Fake Installers #Forged Certificates #malware #Social Engineering #TamperedChef
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 23 Nov 2025 03:21:10 +0000
════════════════════════
⌗ Tags: #Malware #Acronis #cybercrime #EvilAI #Fake Installers #Forged Certificates #malware #Social Engineering #TamperedChef
Penetration Testing Tools
TamperedChef Campaign Uses Forged Certificates to Distribute Malware via Fake Installers
The TamperedChef malware campaign is actively distributing payloads via fake software installers and forged digital certificates, primarily targeting users searching for utilities.
⤷ Title: TamperedChef Malvertising Uses US Shell Companies to Sign Trojanized Apps with Valid Certificates, Deploying Stealth Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:42:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis #Code_Signing Certificate #JavaScript Backdoor #Malvertising #Scheduled Task #SEO Poisoning #Signed Trojan #TamperedChef
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:42:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis #Code_Signing Certificate #JavaScript Backdoor #Malvertising #Scheduled Task #SEO Poisoning #Signed Trojan #TamperedChef
Daily CyberSecurity
TamperedChef Malvertising Uses US Shell Companies to Sign Trojanized Apps with Valid Certificates, Deploying Stealth Backdoor
Acronis exposed TamperedChef, a global campaign using US shell companies to sign trojanized apps. The malware deploys a stealthy, obfuscated JavaScript backdoor via a scheduled task for long-term persistence.
⤷ Title: Shadows of the North: Unmasking the Sprawling Cyber Infrastructure of the DPRK
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:27:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Acronis #BlueNoroff #cyber_espionage #DPRK #Hunt.io #Infrastructure Mapping #Kimsuky #Lazarus Group #North Korea #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:27:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Acronis #BlueNoroff #cyber_espionage #DPRK #Hunt.io #Infrastructure Mapping #Kimsuky #Lazarus Group #North Korea #threat intelligence
Daily CyberSecurity
Shadows of the North: Unmasking the Sprawling Cyber Infrastructure of the DPRK
A joint Hunt.io and Acronis report exposes the shared infrastructure behind Lazarus and Kimsuky, revealing the unified web of North Korean hacking.
⤷ Title: Shared Shadows: Hunt.io Uncovers the Unified Staging Grounds of Lazarus and Kimsuky
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:05:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis TRU #Badcall #BLINDINGCAN #Cyber Espionage #DPRK #Fast Reverse Proxy (FRP) #HttpTroy #Hunt.io #Kimsuky #Lazarus Group #Malware Infrastructure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:05:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis TRU #Badcall #BLINDINGCAN #Cyber Espionage #DPRK #Fast Reverse Proxy (FRP) #HttpTroy #Hunt.io #Kimsuky #Lazarus Group #Malware Infrastructure
Penetration Testing Tools
Shared Shadows: Hunt.io Uncovers the Unified Staging Grounds of Lazarus and Kimsuky
Groups operating in the interests of the DPRK continue to aggressively expand their infrastructure for cyber espionage, financial
⤷ Title: Astaroth Banking Trojan Targets Brazilians via WhatsApp Messages
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:04:11 +0000
════════════════════════
⌗ Tags: #Malware #Security #Acronis #Astaroth #Banking #Boto Cor_de_Rosa #Brazil #Cybersecurity #Fraud #Scam #TROJAN #WhatsApp
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:04:11 +0000
════════════════════════
⌗ Tags: #Malware #Security #Acronis #Astaroth #Banking #Boto Cor_de_Rosa #Brazil #Cybersecurity #Fraud #Scam #TROJAN #WhatsApp
Hackread
Astaroth Banking Trojan Targets Brazilians via WhatsApp Messages
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: “Boto Cor-de-Rosa”: Banking Malware Astaroth Pivots to WhatsApp in New Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 00:28:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis #Astaroth #Banking Trojan #Boto Cor_de_Rosa #Malware Analysis #Python Worm #social engineering #WhatsApp Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 00:28:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis #Astaroth #Banking Trojan #Boto Cor_de_Rosa #Malware Analysis #Python Worm #social engineering #WhatsApp Security
Daily CyberSecurity
“Boto Cor-de-Rosa”: Banking Malware Astaroth Pivots to WhatsApp in New Campaign
The notorious Brazilian banking malware Astaroth has evolved again, this time turning one of the world’s most popular messaging platforms into a weapon. In a new campaign dubbed “Boto …
⤷ Title: The WhatsApp Worm: “Boto Cor-de-Rosa” Campaign Weaponizes Social Trust
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 08:21:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Cyber Attacks #Acronis #Astaroth #banking trojan #Boto Cor_de_Rosa #Brazil #Guildma #python #Social Engineering #Visual Basic #WhatsApp
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 08:21:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 Cyber Attacks #Acronis #Astaroth #banking trojan #Boto Cor_de_Rosa #Brazil #Guildma #python #Social Engineering #Visual Basic #WhatsApp
Information Security News
The WhatsApp Worm: “Boto Cor-de-Rosa” Campaign Weaponizes Social Trust
A sophisticated malware campaign has surfaced in Brazil, leveraging the ubiquity of WhatsApp to propagate the Astaroth banking trojan. This delivery vector has proven exceptionally potent given th…
⤷ Title: New “LOTUSLITE” Backdoor Targets U.S. Government in Suspected Mustang Panda Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:11:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Acronis TRU #APT #DLL Sideloading #Espionage #LOTUSLITE #Malware Analysis #Mustang Panda #spear_phishing #US government
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:11:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Acronis TRU #APT #DLL Sideloading #Espionage #LOTUSLITE #Malware Analysis #Mustang Panda #spear_phishing #US government
Daily CyberSecurity
New “LOTUSLITE” Backdoor Targets U.S. Government in Suspected Mustang Panda Campaign
A new espionage campaign targeting U.S. government entities has been uncovered, utilizing a custom backdoor dubbed LOTUSLITE. Researchers from the Acronis Threat Research Unit (TRU) have linked th…
⤷ Title: Mastang Panda Uses Venezuela News to Spread LOTUSLITE Malware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 11:29:27 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Malware #Security #Acronis #China #Cyber Attack #Cybersecurity #HoneyMyte #Mustang Panda #Phishing #USA #Venezuela
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 11:29:27 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Malware #Security #Acronis #China #Cyber Attack #Cybersecurity #HoneyMyte #Mustang Panda #Phishing #USA #Venezuela
Hackread
Mastang Panda Uses Venezuela News to Spread LOTUSLITE Malware
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread