Groups
Groups
Sign in
Groups
Groups
Technical - Malware
Conversations
About
Send feedback
Help
Group path
Technical - Malware
1–30 of 9056
Mark all as read
Report group
0 selected
Eyal Estrin
12:42 AM
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
https://securelist.com/tr/payload-ransomware-via-group-policy/121335/ Eyal Estrin Author | Cloud
unread,
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
https://securelist.com/tr/payload-ransomware-via-group-policy/121335/ Eyal Estrin Author | Cloud
12:42 AM
Eyal Estrin
Sep 19
PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
https://www.crowdstrike.com/en-us/blog/phantomraven-llm-generated-information-stealer-for-bug-bounty-
unread,
PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
https://www.crowdstrike.com/en-us/blog/phantomraven-llm-generated-information-stealer-for-bug-bounty-
Sep 19
Eyal Estrin
Sep 19
One Kit, Forty Companies: How a Malware-as-a-Service Platform Used GitHub as a Distribution Network for its Campaign
https://blog.lastpass.com/posts/lastpass-delphos-report-rapuncel-infostealer Eyal Estrin Author |
unread,
One Kit, Forty Companies: How a Malware-as-a-Service Platform Used GitHub as a Distribution Network for its Campaign
https://blog.lastpass.com/posts/lastpass-delphos-report-rapuncel-infostealer Eyal Estrin Author |
Sep 19
Eyal Estrin
Sep 19
WeaselBiscuit Strips BeaverTail and OtterCookie Down to Essentials
https://opensourcemalware.com/blog/introducing-weaselbiscuit Eyal Estrin Author | Cloud Architect |
unread,
WeaselBiscuit Strips BeaverTail and OtterCookie Down to Essentials
https://opensourcemalware.com/blog/introducing-weaselbiscuit Eyal Estrin Author | Cloud Architect |
Sep 19
Eyal Estrin
Sep 18
Beware the SparroWock: The backdoor that bites, the commands that catch
https://www.welivesecurity.com/en/eset-research/beware-sparrowock-backdoor-bites-commands-catch/ Eyal
unread,
Beware the SparroWock: The backdoor that bites, the commands that catch
https://www.welivesecurity.com/en/eset-research/beware-sparrowock-backdoor-bites-commands-catch/ Eyal
Sep 18
Eyal Estrin
Sep 18
HBO Max Reddit account compromised, used in ‘PasteSwitch’ ClickFix attacks
https://www.scworld.com/news/hbo-max-reddit-account-compromised-used-in-pasteswitch-clickfix-attacks
unread,
HBO Max Reddit account compromised, used in ‘PasteSwitch’ ClickFix attacks
https://www.scworld.com/news/hbo-max-reddit-account-compromised-used-in-pasteswitch-clickfix-attacks
Sep 18
Eyal Estrin
Sep 18
The banana stand: brokering and managing infections across Asia using MQTT
https://www.lumen.com/blog/en-us/the-banana-stand-brokering-and-managing-infections-across-asia-using
unread,
The banana stand: brokering and managing infections across Asia using MQTT
https://www.lumen.com/blog/en-us/the-banana-stand-brokering-and-managing-infections-across-asia-using
Sep 18
Eyal Estrin
Sep 18
Nintendo warns of Switch code execution flaw via on-screen QR codes
https://cyberinsider.com/nintendo-warns-of-switch-code-execution-flaw-via-on-screen-qr-codes/ https:/
unread,
Nintendo warns of Switch code execution flaw via on-screen QR codes
https://cyberinsider.com/nintendo-warns-of-switch-code-execution-flaw-via-on-screen-qr-codes/ https:/
Sep 18
Eyal Estrin
Sep 18
AI helps scammers build convincing antivirus renewal pages
https://www.malwarebytes.com/blog/threat-intel/2026/09/ai-helps-scammers-build-convincing-antivirus-
unread,
AI helps scammers build convincing antivirus renewal pages
https://www.malwarebytes.com/blog/threat-intel/2026/09/ai-helps-scammers-build-convincing-antivirus-
Sep 18
Eyal Estrin
Sep 17
RatHat: AI-Powered Mobile Threat is Here for Your Credentials & Bank Accounts
https://zimperium.com/blog/rathat-ai-powered-mobile-threat-is-here-for-your-credentials-bank-accounts
unread,
RatHat: AI-Powered Mobile Threat is Here for Your Credentials & Bank Accounts
https://zimperium.com/blog/rathat-ai-powered-mobile-threat-is-here-for-your-credentials-bank-accounts
Sep 17
Eyal Estrin
Sep 17
SilkParasite Infrastructure: SpiceRAT Servers Tied to Energy and Government Targets Across Central Asia
https://hunt.io/blog/silkparasite-spicerat-central-asia-infrastructure Eyal Estrin Author | Cloud
unread,
SilkParasite Infrastructure: SpiceRAT Servers Tied to Energy and Government Targets Across Central Asia
https://hunt.io/blog/silkparasite-spicerat-central-asia-infrastructure Eyal Estrin Author | Cloud
Sep 17
Eyal Estrin
Sep 17
NightEagle targets Russian companies
https://securelist.com/tr/nighteagle-apt-ghostcontainer-and-tunneling/121323/ Eyal Estrin Author |
unread,
NightEagle targets Russian companies
https://securelist.com/tr/nighteagle-apt-ghostcontainer-and-tunneling/121323/ Eyal Estrin Author |
Sep 17
Eyal Estrin
Sep 17
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security
https://thehackernews.com/2026/09/n0va-phishkit-targets-us-and-eu.html Eyal Estrin Author | Cloud
unread,
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security
https://thehackernews.com/2026/09/n0va-phishkit-targets-us-and-eu.html Eyal Estrin Author | Cloud
Sep 17
Eyal Estrin
Sep 17
You’re on the Real X Website — and You’re Still Being Scammed
https://brothke.medium.com/youre-on-the-real-x-website-and-you-re-still-being-scammed-ebd3fba9e344
unread,
You’re on the Real X Website — and You’re Still Being Scammed
https://brothke.medium.com/youre-on-the-real-x-website-and-you-re-still-being-scammed-ebd3fba9e344
Sep 17
Eyal Estrin
Sep 17
Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit
https://www.acronis.com/en/tru/posts/red-heron-exploits-gitea-n-day-flaw-in-multinational-campaign-
unread,
Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit
https://www.acronis.com/en/tru/posts/red-heron-exploits-gitea-n-day-flaw-in-multinational-campaign-
Sep 17
Eyal Estrin
Sep 15
Fake Voicemail Transcript Emails Target 7,800+ Organizations in Large-Scale Credential Phishing
https://blog.checkpoint.com/security/fake-voicemail-transcript-emails-target-7800-organizations-in-
unread,
Fake Voicemail Transcript Emails Target 7,800+ Organizations in Large-Scale Credential Phishing
https://blog.checkpoint.com/security/fake-voicemail-transcript-emails-target-7800-organizations-in-
Sep 15
Eyal Estrin
Sep 14
Gray Rabbits and the Tale of a One-Click Backdoor
https://www.gendigital.com/blog/insights/research/one-click-backdoor-sogou Eyal Estrin Author | Cloud
unread,
Gray Rabbits and the Tale of a One-Click Backdoor
https://www.gendigital.com/blog/insights/research/one-click-backdoor-sogou Eyal Estrin Author | Cloud
Sep 14
Eyal Estrin
Sep 14
Casbaneiro: A Banking Trojan with Distributed Data-Receiving Servers
https://www.fortinet.com/blog/threat-research/casbaneiro-a-banking-trojan-with-distributed-data-
unread,
Casbaneiro: A Banking Trojan with Distributed Data-Receiving Servers
https://www.fortinet.com/blog/threat-research/casbaneiro-a-banking-trojan-with-distributed-data-
Sep 14
Eyal Estrin
Sep 12
Malware on the Blockchain: An Ongoing Campaign’s New WebRTC Twist
https://www.netskope.com/blog/malware-on-the-blockchain-an-ongoing-campaigns-new-webrtc-twist Eyal
unread,
Malware on the Blockchain: An Ongoing Campaign’s New WebRTC Twist
https://www.netskope.com/blog/malware-on-the-blockchain-an-ongoing-campaigns-new-webrtc-twist Eyal
Sep 12
Eyal Estrin
Sep 12
Vwork: Weaponized Open-source Software as an Addon for Gigabud
https://www.group-ib.com/blog/vwork-app-cloning-gigabud-goldfactory/ Eyal Estrin Author | Cloud
unread,
Vwork: Weaponized Open-source Software as an Addon for Gigabud
https://www.group-ib.com/blog/vwork-app-cloning-gigabud-goldfactory/ Eyal Estrin Author | Cloud
Sep 12
Eyal Estrin
Sep 12
GuardBreaker: Derailing AI-assisted malware analysis with a code comment
https://www.welivesecurity.com/en/business-security/guardbreaker-derailing-ai-assisted-malware-
unread,
GuardBreaker: Derailing AI-assisted malware analysis with a code comment
https://www.welivesecurity.com/en/business-security/guardbreaker-derailing-ai-assisted-malware-
Sep 12
Eyal Estrin
Sep 12
India’s STPI serves TerminalFix-style attack via fake Cloudflare check
https://www.csoonline.com/article/4221243/indias-stpi-serves-terminalfix-style-attack-via-fake-
unread,
India’s STPI serves TerminalFix-style attack via fake Cloudflare check
https://www.csoonline.com/article/4221243/indias-stpi-serves-terminalfix-style-attack-via-fake-
Sep 12
Eyal Estrin
Sep 12
Mantax Otax: Indonesian Mobile Ransomware with Spyware Integration
https://zimperium.com/blog/mantax-otax-indonesian-mobile-ransomware-with-spyware-integration Eyal
unread,
Mantax Otax: Indonesian Mobile Ransomware with Spyware Integration
https://zimperium.com/blog/mantax-otax-indonesian-mobile-ransomware-with-spyware-integration Eyal
Sep 12
Eyal Estrin
Sep 12
Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy
https://blog.knowbe4.com/bypassing-the-gatekeepers-how-a-global-phishing-campaign-turns-googles-
unread,
Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy
https://blog.knowbe4.com/bypassing-the-gatekeepers-how-a-global-phishing-campaign-turns-googles-
Sep 12
Eyal Estrin
Sep 12
DoppelCart: 119,000 Domains in What May Be the Largest Documented Fake-Shop Network
https://nebty-id.com/en/doppelcart-fake-shop-network/ Eyal Estrin Author | Cloud Architect | AWS •
unread,
DoppelCart: 119,000 Domains in What May Be the Largest Documented Fake-Shop Network
https://nebty-id.com/en/doppelcart-fake-shop-network/ Eyal Estrin Author | Cloud Architect | AWS •
Sep 12
Eyal Estrin
Sep 12
Grand Theft Auto VI Hype Leads to Malware
https://www.huntress.com/blog/fake-gta6-download-malware-analysis Eyal Estrin Author | Cloud
unread,
Grand Theft Auto VI Hype Leads to Malware
https://www.huntress.com/blog/fake-gta6-download-malware-analysis Eyal Estrin Author | Cloud
Sep 12
Eyal Estrin
Sep 10
Threat Spotlight: Phishing pages that exist only inside the victim’s browser
https://blog.barracuda.com/2026/09/09/browser-based-phishing-blob-urls-microsoft-redirects Eyal
unread,
Threat Spotlight: Phishing pages that exist only inside the victim’s browser
https://blog.barracuda.com/2026/09/09/browser-based-phishing-blob-urls-microsoft-redirects Eyal
Sep 10
Eyal Estrin
Sep 10
Huntress Uncovers Phishing Attacks Using Fake Browser Pages and Rogue RMM Tools
https://www.itsecurityguru.org/2026/09/09/huntress-uncovers-phishing-attacks-using-fake-browser-pages
unread,
Huntress Uncovers Phishing Attacks Using Fake Browser Pages and Rogue RMM Tools
https://www.itsecurityguru.org/2026/09/09/huntress-uncovers-phishing-attacks-using-fake-browser-pages
Sep 10
Eyal Estrin
Sep 10
Windows Security Center
https://ipurple.team/2026/09/09/windows-security-center/ Eyal Estrin Author | Cloud Architect | AWS •
unread,
Windows Security Center
https://ipurple.team/2026/09/09/windows-security-center/ Eyal Estrin Author | Cloud Architect | AWS •
Sep 10
Eyal Estrin
Sep 9
WeWorm - The first zero-click worm to spread through WeChat calls across iOS and Android
https://calif.io/research/weworm Eyal Estrin Author | Cloud Architect | AWS • Azure • GCP Insights
unread,
WeWorm - The first zero-click worm to spread through WeChat calls across iOS and Android
https://calif.io/research/weworm Eyal Estrin Author | Cloud Architect | AWS • Azure • GCP Insights
Sep 9