Tag: windows backdoor
6 articles

Star Blizzard Exploits Fake Invites to Deploy Windows Backdoor
Over 100 organizations, primarily in the US and UK, have fallen prey to a sophisticated phishing scam that uses fake event invites to install a sneaky Windows backdoor, with Microsoft tracing the attacks back to a Russian hacking group. The campaign, which has been running in waves since January, appears to be targeting individuals and organizations with ties to Ukraine.

SLEEPWALKER Backdoor Exploits Windows for Stealthy Command Execution
Meet SLEEPWALKER, a sneaky new Windows backdoor that's been flying under the radar, allowing attackers to execute commands stealthily. This highly sophisticated malware is designed to evade detection, suggesting a targeted and well-resourced operation.

Malware researcher uncovers Sleepwalker Windows backdoor with custom command language
Meet Sleepwalker, a sneaky new Windows backdoor discovered by malware researcher Dominik Reichel, featuring a custom command language that allows it to hide in plain sight. This clever malware masquerades as a Microsoft system component, making it a formidable foe in the world of cyber threats.

Mirage Kitten Unveils New Malware Arsenal for Middle East Espionage
Mirage Kitten hackers have unleashed a potent new malware arsenal targeting the Middle East, threatening aerospace, aviation, defense, and telecom organizations with stealthy backdoors and tunnelers that enable covert surveillance and data relay. Their latest Windows backdoor, NightLedger, masquerades as a legitimate system file to infiltrate and gather intel.

Iranian Hackers Deploy NightLedger Backdoor in Global Espionage Campaign
Meet NightLedger, a sneaky new Windows backdoor that's part of a sophisticated espionage toolkit used by Iranian hackers to secretly infiltrate and gather intel from targets worldwide. This powerful tool enables hackers to execute commands, capture screenshots, and operate undetected, putting organizations in the Middle East, Africa, and South Asia on high alert.

TELESHIM Malware Exploits Telegram for C2 in Middle East Attacks
TELESHIM malware has launched a sophisticated attack in the Middle East, using a multi-stage chain to infect systems and cleverly leveraging Telegram's API to disguise its command-and-control communications as legitimate internet traffic. This sneaky tactic allows the malware to blend in seamlessly, making it a formidable threat.