Tag

#malware

81 stories taggedmalware.

Macro photograph of green circuit board traces glowing faintly in low light, with one section subtly illuminated in amber suggesting a hidden active signal bene
Threat Intelligence

NeedyMantis: The Hidden Malware That Moves In After the Break-In

Microsoft has named a previously unknown malware family being used against telecoms, universities, and government contractors. The group behind it is linked to China. And once it's inside a network, it's built to stay quiet.

4 min read
Illustration for the story: SectopRAT Hidden Inside Legitimate Audio Software to Steal Passwords and Take Remote Control
Threat Intelligence

SectopRAT Hidden Inside Legitimate Audio Software to Steal Passwords and Take Remote Control

Fortinet's incident responders found a powerful remote-access trojan tucked inside a tampered copy of a real audio program. The malware can grab browser passwords, watch your screen, and hand full control of a Windows PC to criminals.

4 min read
A network visualization showing interconnected IoT devices across Asia and South America on a world map, with hidden backdoor pathways glowing in the mesh, mess
Threat Intelligence

New BambooToken Malware Hides Its Orders Inside IoT Messaging Traffic

Researchers at Lumen's Black Lotus Labs say the backdoor has quietly infected around a dozen firms across Asia and South America since 2023, using a chat protocol built for smart devices to stay hidden.

4 min read
A software development workspace with code repositories displayed on multiple monitors, malicious commits highlighted in red within the codebase, and worm propa
AI Security

An Attacker Hijacked an AI Coding Assistant and Spread a Worm Across 100 Repositories

Mandiant says a threat actor poisoned an AI tool's recommendations at a software-as-a-service provider, then used the resulting access to push Shai-Hulud through about 100 internal code repositories.

3 min read
A search engine results page filled with malicious links and fake tech-support pop-ups, traced back through investigation documents to obscured IT operations in
Threat Intelligence

BengalSEO: The Decade-Old Rajasthan Operation Poisoning Bing Results

Researchers say two Indian IT firms have quietly gamed search engines since 2015 to push malware and fake tech-support pop-ups.

4 min read
A corporate network diagram projected on a screen with IT technician at desk, remote support software interface visible, malware infection paths shown spreading
Threat Intelligence

Hackers Are Hijacking Remote-Support Software to Spread Malware Across Whole Networks

A modified version of the popular IT tool ScreenConnect is being used in a self-spreading attack that starts with a fake tech-support call and ends with criminals inside your entire network.

3 min read
A laptop screen displaying a fake video interview interface with a professional background, while a smartphone nearby shows cryptocurrency wallet warnings
Threat Intelligence

Fake Job Interviews Are Draining Bank Accounts. Here Is How the Scam Works.

Criminals posing as recruiters on LinkedIn and Indeed are tricking jobseekers into downloading malware disguised as interview software. One person lost £18,000 in cryptocurrency overnight.

4 min read
A Windows system notification center showing disabled security alerts, with mining activity indicators visible in task manager in the background
Threat Intelligence

REVSTEALER Leaves Four Hidden Programs Behind, One Kills Windows Defender to Mine Crypto

Elastic Security Labs found the info-stealer drops helpers that survive after it self-deletes, including one that switches off Windows Update and Defender before starting a coin miner.

4 min read
A network diagram showing Node
Threat Intelligence

Hackers Are Hiding Malware Inside Node.js, and Windows Sees Nothing Wrong

Symantec says attackers have been abusing the legitimate Node.js runtime since February 2026 to slip past defences at governments, tech firms and hotel chains.

3 min read
A computer screen showing a fake software download webpage that mimics legitimate sources, with Windows Update settings disabled in the system tray
Threat Intelligence

Fake Software Download Sites Push Malware That Turns Off Windows Update

Microsoft says a long-running campaign is pushing rigged installers to Chinese-speaking users and staff at multinationals operating in China, disabling defences on the way in.

3 min read
A blockchain network visualization displayed across multiple monitors in a security research lab, with hidden command-and-control instructions embedded within t
Threat Intelligence

Criminals Hid a Hacking Network Inside a Cryptocurrency Blockchain. Thirty-One Companies Got Caught.

A new campaign turns blockchain technology into an untraceable instruction relay, letting attackers redirect infected computers to a new server for less than a penny per update.

5 min read
A freelance work platform office with network security analysts reviewing fake account profiles and malicious Excel attachment samples, malware analysis tools r
Threat Intelligence

Russian man charged with infecting 80,000 freelancers through fake Excel attachments

Searzhudin Aktulaev allegedly used 255 fake accounts on a freelance work platform to spread TVRAT and DarkVNC remote-control malware between 2016 and 2017.

4 min read
A developer's laptop showing a code repository and package manager interface with 13 malicious theme libraries listed, alongside a smartphone running older iOS
Threat Intelligence

Booby-trapped Composer packages hijack Vietnamese streaming sites to hit old iPhones

Thirteen fake theme libraries on Packagist quietly loaded ad-fraud scripts and pushed spyware at visitors running unpatched iOS, researchers say.

4 min read
A laptop screen showing a convincing fake captcha verification popup while a user's finger hovers near the keyboard, office background blurred, moment of social
Threat Intelligence

ClickFix: The Attack That Talks You Into Hacking Yourself

Microsoft says the fake 'prove you're not a robot' trick was the single most common way criminals broke into companies last year. The clever bit is that the victim does the hard work.

4 min read
A Windows PC startup screen with a wallpaper application installer window open, system security warnings visible in the taskbar, antivirus trust indicators high
Threat Intelligence

ValleyRAT Malware Hides Inside Signed Chinese Wallpaper App to Bypass Antivirus

Silver Fox is smuggling the ValleyRAT backdoor onto Windows PCs by wrapping it around QN Wallpaper, a legitimate signed program many users have already told their antivirus to trust.

3 min read
© 2026 Threat Vectr