⤷ Title: Scammers Impersonate Authorities to Swipe OTPs with Remote Access Apps
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 08 Jan 2025 12:00:56 +0000
════════════════════════
⌗ Tags: #Security #Scams and Fraud #AnyDesk #Cybersecurity #Fraud #Middle East #OTM #RAT
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 08 Jan 2025 12:00:56 +0000
════════════════════════
⌗ Tags: #Security #Scams and Fraud #AnyDesk #Cybersecurity #Fraud #Middle East #OTM #RAT
Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
Scammers Impersonate Authorities to Swipe OTPs with Remote Access Apps
Follow us on Bluesky, Twitter (X) and Facebook at @Hackread
👍1
⤷ Title: Fraudsters Exploit Trust with Fake Refund Schemes in the Middle East
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Thu, 09 Jan 2025 01:28:53 +0000
════════════════════════
⌗ Tags: #Cyber Security #AnyDesk #One_Time Passwords #RedLine #Redline stealer #Refund Schemes
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Thu, 09 Jan 2025 01:28:53 +0000
════════════════════════
⌗ Tags: #Cyber Security #AnyDesk #One_Time Passwords #RedLine #Redline stealer #Refund Schemes
Cybersecurity News
Fraudsters Exploit Trust with Fake Refund Schemes in the Middle East
Beware of refund schemes targeting consumers in the Middle East. Learn how scammers exploit government portals and remote access tools to steal sensitive data and money.
⤷ Title: Unmasking Play Ransomware: Tactics, Techniques, and Mitigation Strategies
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 10 Jan 2025 01:50:13 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Balloonfly #BloodHound #Cobalt Strike #CVE_2018_13379 #CVE_2020_12812 #CVE_2022_41040 #CVE_2022_41082 #Maui ransomware #mimikatz #Play Ransomware #PlayCrypt #Plink #ProxyNotShell #SHATTEREDGLASS ransomware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 10 Jan 2025 01:50:13 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Balloonfly #BloodHound #Cobalt Strike #CVE_2018_13379 #CVE_2020_12812 #CVE_2022_41040 #CVE_2022_41082 #Maui ransomware #mimikatz #Play Ransomware #PlayCrypt #Plink #ProxyNotShell #SHATTEREDGLASS ransomware
Cybersecurity News
Unmasking Play Ransomware: Tactics, Techniques, and Mitigation Strategies
Learn about the collaboration of Play ransomware with the Andariel group. Explore the tactics used in this sophisticated cyber attack.
⤷ Title: AnyDesk Exploit Alert: CVE-2024-12754 Enables Privilege Escalation—PoC Available
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Feb 2025 02:15:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #AnyDesk #CVE_2024_12754 #CVE_2024_12754 PoC
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Feb 2025 02:15:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #AnyDesk #CVE_2024_12754 #CVE_2024_12754 PoC
Daily CyberSecurity
AnyDesk Exploit Alert: CVE-2024-12754 Enables Privilege Escalation—PoC Available
Discover the security flaw, CVE-2024-12754, found in AnyDesk. Find out how this vulnerability could grant unauthorized access and complete control of a system.
⤷ Title: Threat Actors Exploit SimpleHelp Vulnerabilities to Deploy Sliver Backdoor
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Feb 2025 01:56:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #Akira ransomware #AnyDesk #OpenSSH #SimpleHelp #SimpleHelp vulnerabilities #Sliver Backdoor
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Feb 2025 01:56:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #Akira ransomware #AnyDesk #OpenSSH #SimpleHelp #SimpleHelp vulnerabilities #Sliver Backdoor
Cybersecurity News
Threat Actors Exploit SimpleHelp Vulnerabilities to Deploy Sliver Backdoor
Field Effect reveals a cyberattack that used newly discovered SimpleHelp RMM software vulnerabilities to deploy the Sliver backdoor and establish persistence mechanisms.
⤷ Title: From Confluence Vulnerability (CVE-2023-22527) to LockBit Encryption: A Rapid Attack Chain
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 25 Feb 2025 01:37:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #AnyDesk #Confluence #CVE_2023_22527
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 25 Feb 2025 01:37:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #AnyDesk #Confluence #CVE_2023_22527
Daily CyberSecurity
From Confluence Vulnerability (CVE-2023-22527) to LockBit Encryption: A Rapid Attack Chain
Uncover the details of the LockBit encryption attack using remote code execution vulnerabilities in Confluence. Learn more.
⤷ Title: Medusa Ransomware Surges: Attacks Jump 42% as Cybercriminals Expand Operations
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Mar 2025 01:48:41 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #LockBit #Medusa Ransomware #Medusa ransomware attacks #MedusaLocker ransomware #Mesh Agent #Noberus #SimpleHelp #Spearwing
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 10 Mar 2025 01:48:41 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #LockBit #Medusa Ransomware #Medusa ransomware attacks #MedusaLocker ransomware #Mesh Agent #Noberus #SimpleHelp #Spearwing
Daily CyberSecurity
Medusa Ransomware Surges: Attacks Jump 42% as Cybercriminals Expand Operations
Explore the rise of Medusa ransomware attacks, increasing by 42%. Understand the threat and protective measures you can take.
⤷ Title: Kimsuky APT Group Abuses HWP and AnyDesk for Covert Remote Surveillance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 00:01:06 +0000
════════════════════════
⌗ Tags: #Cyber Security #AnyDesk #APT #ASEC #backdoor #cybersecurity #dropbox #HWP #Kimsuky #living_off_the_land #North Korea #phishing #Remote Access #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Jun 2025 00:01:06 +0000
════════════════════════
⌗ Tags: #Cyber Security #AnyDesk #APT #ASEC #backdoor #cybersecurity #dropbox #HWP #Kimsuky #living_off_the_land #North Korea #phishing #Remote Access #spear_phishing
Daily CyberSecurity
Kimsuky APT Group Abuses HWP and AnyDesk for Covert Remote Surveillance
Kimsuky APT is using HWP documents and stealthy AnyDesk backdoors in a new phishing campaign to infiltrate systems under the guise of academic collaboration.
⤷ Title: Forense Digital no AnyDesk: Onde Encontrar Evidências de Conexões Remotas
════════════════════════
𐀪 Author: Lucas Soeiro
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 15:44:43 GMT
════════════════════════
⌗ Tags: #computação_forense #forensics #anydesk #hacking #windows
════════════════════════
𐀪 Author: Lucas Soeiro
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 15:44:43 GMT
════════════════════════
⌗ Tags: #computação_forense #forensics #anydesk #hacking #windows
Medium
Forense Digital no AnyDesk: Onde Encontrar Evidências de Conexões Remotas
Nos últimos anos, o AnyDesk se tornou uma das ferramentas de acesso remoto mais populares do mundo. Usado por empresas de suporte técnico e…
⤷ Title: Fake AnyDesk Installer Spreads MetaStealer Through ClickFix Scam
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 03 Sep 2025 09:57:47 +0000
════════════════════════
⌗ Tags: #Security #Malware #Scams and Fraud #AnyDesk #ClickFix #CloudFlare #Cybersecurity #FileFix #Fraud #Scam #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 03 Sep 2025 09:57:47 +0000
════════════════════════
⌗ Tags: #Security #Malware #Scams and Fraud #AnyDesk #ClickFix #CloudFlare #Cybersecurity #FileFix #Fraud #Scam #Windows
Hackread
Fake AnyDesk Installer Spreads MetaStealer Through ClickFix Scam
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: MostereRAT Targets Windows, Uses AnyDesk and TightVNC for Full Access
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 14:08:09 +0000
════════════════════════
⌗ Tags: #Security #Malware #AnyDesk #Fraud #Japan #MostereRAT #Phishing #TightVNC #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 14:08:09 +0000
════════════════════════
⌗ Tags: #Security #Malware #AnyDesk #Fraud #Japan #MostereRAT #Phishing #TightVNC #Windows
Hackread
MostereRAT Targets Windows, Uses AnyDesk and TightVNC for Full Access
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: MostereRAT: The New Trojan Using Legitimate Tools to Attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Sep 2025 07:56:05 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #cybersecurity #EPL #malware #MostereRAT #Remote Access Trojan #TightVNC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Sep 2025 07:56:05 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #cybersecurity #EPL #malware #MostereRAT #Remote Access Trojan #TightVNC
Penetration Testing Tools
MostereRAT: The New Trojan Using Legitimate Tools to Attack
A new report details a new trojan, MostereRAT, that uses legitimate remote access tools like AnyDesk and TightVNC to maintain covert control.
⤷ Title: The Gentlemen: A New Ransomware Group Using Legitimate Tools to Bypass Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 00:05:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #Group Policy #ransomware #The Gentlemen
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 00:05:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #Group Policy #ransomware #The Gentlemen
Daily CyberSecurity
The Gentlemen: A New Ransomware Group Using Legitimate Tools to Bypass Security
A new report reveals The Gentlemen ransomware group is using legitimate drivers and Group Policy to bypass defenses and deploy highly tailored malware.
⤷ Title: Ransomware Gangs Weaponize AnyDesk, Splashtop, and Other Legitimate RATs to Bypass Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 04 Oct 2025 00:05:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #ransomware #rat #Remote Access Trojan #Security Evasion #Seqrite #Splashtop #UltraViewer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 04 Oct 2025 00:05:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #ransomware #rat #Remote Access Trojan #Security Evasion #Seqrite #Splashtop #UltraViewer
Daily CyberSecurity
Ransomware Gangs Weaponize AnyDesk, Splashtop, and Other Legitimate RATs to Bypass Security
Ransomware groups are hijacking legitimate RATs like AnyDesk and Splashtop to gain stealthy persistence, spread laterally, and disable antivirus software in enterprise networks.
⤷ Title: Trigona Ransomware Attacks MS-SQL Servers Using Rust Scanner and BCP Utility to Deploy Payloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 00:34:42 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #BCP Utility #CLR Shell #MS_SQL Server #RaaS #ransomware #Rust Scanner #Trigona
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 00:34:42 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #BCP Utility #CLR Shell #MS_SQL Server #RaaS #ransomware #Rust Scanner #Trigona
Daily CyberSecurity
Trigona Ransomware Attacks MS-SQL Servers Using Rust Scanner and BCP Utility to Deploy Payloads
ASEC exposed Trigona RaaS attacking exposed MS-SQL servers via brute-force. The group uses CLR Shell, a new Rust-based scanner, and the BCP utility to store and execute malware from database tables.
⤷ Title: Scammers Abuse WhatsApp Screen Sharing to Steal OTPs and Funds
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 13 Nov 2025 17:15:15 +0000
════════════════════════
⌗ Tags: #Scams and Fraud #Security #AnyDesk #Cybersecurity #eset #Facebook #Fraud #OTP #Privacy #Scam #TeamViewer #Vulnerability #WhatsApp
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 13 Nov 2025 17:15:15 +0000
════════════════════════
⌗ Tags: #Scams and Fraud #Security #AnyDesk #Cybersecurity #eset #Facebook #Fraud #OTP #Privacy #Scam #TeamViewer #Vulnerability #WhatsApp
Hackread
Scammers Abuse WhatsApp Screen Sharing to Steal OTPs and Funds
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: DeadLock Ransomware Deploys BYOVD EDR Killer by Exploiting Baidu Driver for Kernel-Level Defense Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Dec 2025 00:06:01 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Baidu Driver #BYOVD #Custom Cipher #CVE_2024_51324 #DeadLock Ransomware #EDR Killer #Kernel Privilege
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Dec 2025 00:06:01 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Baidu Driver #BYOVD #Custom Cipher #CVE_2024_51324 #DeadLock Ransomware #EDR Killer #Kernel Privilege
Daily CyberSecurity
DeadLock Ransomware Deploys BYOVD EDR Killer by Exploiting Baidu Driver for Kernel-Level Defense Bypass
DeadLock Ransomware uses BYOVD (Baidu driver exploit) and the EDRGay.exe loader to kill EDR/AV at the kernel level. It uses a custom stream cipher and deletes shadow copies to prevent recovery.
⤷ Title: Tactical Evolution: Trigona Ransomware Debuts Custom Exfiltration Armory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:32:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #infosec #Kernel Drivers #Malware Analysis #mimikatz #Network Evasion #ransomware #Rhantus syndicate #Trigona Ransomware #uploader_client.exe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:32:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #infosec #Kernel Drivers #Malware Analysis #mimikatz #Network Evasion #ransomware #Rhantus syndicate #Trigona Ransomware #uploader_client.exe
Daily CyberSecurity
Tactical Evolution: Trigona Ransomware Debuts Custom Exfiltration Armory
Trigona ransomware swaps Rclone for a custom tool that rotates connections to evade monitoring. Learn how uploader_client.exe powers their data theft.
⤷ Title: Rare Werewolf Phishing Campaign Targets Russian Aerospace With AnyDesk
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:00:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #Librarian Ghouls #living_off_the_land #Rare Werewolf #Russian aerospace #Seqrite #spear_phishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:00:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #Librarian Ghouls #living_off_the_land #Rare Werewolf #Russian aerospace #Seqrite #spear_phishing
Daily CyberSecurity
Rare Werewolf Phishing Campaign Targets Russian Aerospace With AnyDesk
At a glance Actor / group Rare Werewolf (aka Librarian Ghouls, Rezet) — suspected Activity Invoice-themed spear-phishing that installs AnyDesk for remote access Targets Russian aerospace and indus…