#malware-as-a-service

[ follow ]
#mirax
fromSecurityWeek
1 week ago
Information security

Mirax RAT Targeting Android Users in Europe

A new remote access trojan named Mirax targets Android users in Europe, enabling extensive control and data theft through sophisticated techniques.
fromThe Hacker News
1 week ago
Roam Research

Mirax Android RAT Turns Devices into SOCKS5 Proxies, Reaching 220,000 via Meta Ads

Mirax is a new Android remote access trojan targeting Spanish-speaking countries, compromising over 220,000 accounts through Meta advertisements.
Information security
fromSecurityWeek
1 week ago

Mirax RAT Targeting Android Users in Europe

A new remote access trojan named Mirax targets Android users in Europe, enabling extensive control and data theft through sophisticated techniques.
Information security
fromTechzine Global
2 weeks ago

Android trojan linked to Cambodia following anomalous DNS spike

A banking Trojan operating from Cambodia registers 35 new domains monthly, targeting users in 21 countries and exploiting fake apps for fraud.
Information security
fromThe Hacker News
1 month ago

ThreatsDay Bulletin: DDR5 Bot Scalping, Samsung TV Tracking, Reddit Privacy Fine & More

AuraStealer malware infrastructure revealed with 48 C2 domains using .shop and .cfd extensions, routed through Cloudflare, distributed via ClickFix with subscription pricing of $295-$585 monthly.
Information security
fromSecurityWeek
1 month ago

Aeternum Botnet Loader Employs Polygon Blockchain C&C to Boost Resilience

Aeternum C2 botnet uses Polygon blockchain for command-and-control, making it resilient to takedowns while eliminating central infrastructure costs.
Information security
fromSecurityWeek
2 months ago

'Stanley' Malware Toolkit Enables Phishing via Website Spoofing

Stanley MaaS creates Chrome extensions that keep the address bar showing legitimate URLs while delivering attacker-controlled phishing content.
#android-malware
Information security
fromThe Hacker News
5 months ago

Matrix Push C2 Uses Browser Notifications for Fileless, Cross-Platform Phishing Attacks

Attackers use browser push notifications via Matrix Push C2 to deliver phishing links cross-platform and fileless, offered as a malware-as-a-service platform.
Information security
fromThe Hacker News
5 months ago

Android Trojan 'Fantasy Hub' Malware Service Turns Telegram Into a Hub for Hackers

Fantasy Hub is an Android RAT sold via Telegram as Malware-as-a-Service enabling device control, SMS interception, data exfiltration, and banking fraud against BYOD users.
#ransomware
Information security
fromThe Hacker News
6 months ago

Rhadamanthys Stealer Evolves: Adds Device Fingerprinting, PNG Steganography Payloads

Rhadamanthys stealer operates as a professional MaaS with advanced fingerprinting and OCR, tiered paid packages, and related tools marketed under a rebranded cybercrime business.
fromThe Hacker News
7 months ago

TAG-150 Develops CastleRAT in Python and C, Expanding CastleLoader Malware Operations

Available in both Python and C variants, CastleRAT's core functionality consists of collecting system information, downloading and executing additional payloads, and executing commands via CMD and PowerShell," Recorded Future Insikt Group said.
Information security
fromComputerworld
7 months ago

The AI-powered cyberattack era is here

Anthropic reported last week that a hacker used its technology for an AI-fueled crime spree involving large-scale ransomware attacks. The attacker used the Claude chatbot for recon, code generation, credential theft, infiltration, and ransom notes against 17 organizations, including healthcare providers, government agencies, religious charities, and a defense contractor. The AI even helpfully proposed ransom amounts, ranging from $75,000 to $500,000 in Bitcoin. This marks the first known case where AI choreographed an entire extortion scheme, automating nearly every step.
Information security
Privacy technologies
fromThe Hacker News
8 months ago

SocGholish Malware Spread via Ad Tools; Delivers Access to LockBit, Evil Corp, and Others

SocGholish malware utilizes Traffic Distribution Systems to redirect users to malicious content and has a Malware-as-a-Service model for cybercriminal operations.
Privacy technologies
fromArs Technica
9 months ago

GitHub abused to distribute payloads on behalf of malware-as-a-service

Malware-as-a-service operators have exploited GitHub to distribute malicious software, posing challenges for organizations relying on the platform.
[ Load more ]