UAC-0099 is using legitimate Notepad++ files alongside malicious components to target organizations in Ukraine, according to Ukraine’s Computer Emergency Response Team. The campaign does not involve a ...
CERT-UA links UAC-0099 to a fake Notepad++ plugin that deploys BURNYBEAR and MATCHBOIL.V2, with persistence running every ...
A malvertising campaign on the Bing search service is pushing a fake Claude desktop app installer hosted on a legitimate Claude.ai domain to deliver the SectopRAT malware.
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing ...
Dynamic Link Libraries (DLLs) have the important function of assisting in reading and executing specific functions. When some of these DLL files go missing, like the cryptbase.dll, you will expect the ...