⤷ Title: RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 16:41:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 16:41:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
Hackread
RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: The Silent Cyberattack That’s Already Inside Your Network
════════════════════════
𐀪 Author: ɌƋƑ•TECH
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 02:38:53 GMT
════════════════════════
⌗ Tags: #analytics #lotl #cybersecurity #powershell #cybersecurity_awareness
════════════════════════
𐀪 Author: ɌƋƑ•TECH
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 02:38:53 GMT
════════════════════════
⌗ Tags: #analytics #lotl #cybersecurity #powershell #cybersecurity_awareness
Medium
The Silent Cyberattack That’s Already Inside Your Network (And You Don’t Even Know It)
(And You Don’t Even Know It)
⤷ Title: The Art of Digital Evasion: How Attackers Hide in Plain Sight
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Sep 2025 08:35:29 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Evasion #hacking #HP Wolf Security #Living_off_the_land #LOTL #Lumma Stealer #malware #Threat Actors #XWorm
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Sep 2025 08:35:29 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Evasion #hacking #HP Wolf Security #Living_off_the_land #LOTL #Lumma Stealer #malware #Threat Actors #XWorm
Penetration Testing Tools
The Art of Digital Evasion: How Attackers Hide in Plain Sight
A new report from HP Wolf Security reveals how cybercriminals are using "living-off-the-land" tactics and hiding malware in images and SVG files to evade detection.
⤷ Title: Russian APTs Exploit LotL Techniques in Ukraine Cyber Attacks, Deploying Sandworm-Linked Webshell and Credential Dumping
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 00:07:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #credential dumping #Espionage #living_off_the_land #LotL #Russia APT #SANDWORM #Ukraine #webshell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 00:07:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #credential dumping #Espionage #living_off_the_land #LotL #Russia APT #SANDWORM #Ukraine #webshell
Daily CyberSecurity
Russian APTs Exploit LotL Techniques in Ukraine Cyber Attacks, Deploying Sandworm-Linked Webshell and Credential Dumping
Symantec exposed a Russian-aligned espionage campaign in Ukraine using LotL tactics. Attackers used a Sandworm-linked webshell (Localolive) and abused scheduled tasks to dump credentials and bypass Windows Defender.
⤷ Title: DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:15:04 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Cybercrime #living_off_the_land #LNK Exploit #LotL #Movie Torrent #powershell #Subtitle File
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:15:04 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Cybercrime #living_off_the_land #LNK Exploit #LotL #Movie Torrent #powershell #Subtitle File
Daily CyberSecurity
DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding
A movie torrent scam uses a DiCaprio film lure to infect PCs with Agent Tesla RAT. The attack chain uses LNK files and malicious code hidden in a subtitle file to achieve fileless execution via LotL tools.
⤷ Title: The “CrashFix” Evolution: KongTuke’s New Playbook for Enterprise Infiltration
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 00:12:28 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #CrashFix #cybersecurity #infosec #KongTuke #living_off_the_land #LotL #ModeloRAT #threat intelligence #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 00:12:28 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #CrashFix #cybersecurity #infosec #KongTuke #living_off_the_land #LotL #ModeloRAT #threat intelligence #Trend Micro
Daily CyberSecurity
The "CrashFix" Evolution: KongTuke’s New Playbook for Enterprise Infiltration
Trend Micro exposes KongTuke's new "CrashFix" tactic, which tricks enterprise users via fake Chrome errors into deploying the fileless modeloRAT backdoor.
⤷ Title: New Phishing Campaign Abuses GitHub to Target South Korea
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 02:01:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyberespionage #FortiGuard Labs #Github C2 #infosec #LNK malware #LotL #Mirae Asset 3.0 #phishing #powershell #south korea #VBScript #XenoRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 02:01:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyberespionage #FortiGuard Labs #Github C2 #infosec #LNK malware #LotL #Mirae Asset 3.0 #phishing #powershell #south korea #VBScript #XenoRAT
Daily CyberSecurity
New Phishing Campaign Abuses GitHub to Target South Korea
FortiGuard Labs unmasks a South Korean espionage wave abusing the GitHub API for C2 and using LNK files to stay invisible. Protect your network from LotL.
⤷ Title: Cisco Talos Unveils “Living-off-the-Land” Tactics Threatening macOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 07:03:52 +0000
════════════════════════
⌗ Tags: #Malware #Apple #Cisco Talos #cybersecurity #DevOps #Enterprise Security #infosec #LotL #macOS #Process Monitoring #Spotlight Metadata #Threat Hunting
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 07:03:52 +0000
════════════════════════
⌗ Tags: #Malware #Apple #Cisco Talos #cybersecurity #DevOps #Enterprise Security #infosec #LotL #macOS #Process Monitoring #Spotlight Metadata #Threat Hunting
Daily CyberSecurity
Cisco Talos Unveils "Living-off-the-Land" Tactics Threatening macOS
Cisco Talos reveals how attackers use native macOS features like Spotlight and SNMP to hijack enterprise workstations. Secure your DevOps environment today.