Living-off-the-land binaries, often shortened to LOLBins, are legitimate Windows executables that attackers abuse to carry out malicious activity while blending in with normal administration. The ...
Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain remote access, and deploy a Node.js-based ...
Bogus software download sites deploy malware that weakens Windows defenses and establishes persistence in China-based ...
Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control over victim computers and install the ScreenConnect remote support ...
The "Spring Ring" operation targets users of the collaboration suite to remotely access their sessions, spread malware, and ...
ANY.RUN uncovers a 46-country phishing campaign using fake tax documents, Vercel infrastructure, and legitimate RMM software for remote system access.
Attackers use fake MP4 files as containers to hide and deliver malware payloads. Censys found 18 malware builds across 40 ...
ChatGPT shared links are used in ClickFix attacks, tricking Windows users into running PowerShell commands that download malware.
Silver Fox hackers use fake software installers to breach Windows systems, weaken security, and target organizations across multiple sectors.
Threat actors are abusing legitimate remote-management tools, including ConnectWise ScreenConnect and Microsoft Quick Assist, to install ...
Cybersecurity researchers at Huntress have uncovered a phishing campaign that abuses Faronics Deploy, a legitimate endpoint ...
A phishing campaign that targets mainstream remote management and monitoring (RMM) platforms has been operating in 46 countries, with 45% of observed activity focused on the United States.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results