Skip to main content

Tag: live c2 decryption

1 article

Laptop screen displays fake website with cryptocurrency wallet download button in dimly lit background.

PamStealer Malware Evolves with Live C2 Decryption and Enhanced Persistence

Meet the latest variant of PamStealer malware, which has evolved with a sneaky new trick: it can only be decrypted through a live command-and-control session, making it even harder to track and stop. This fresh threat uses a fake cryptocurrency wallet site, wavel.app, to lure victims into downloading a malicious disk image file.

Analyst 207