« 2023 »

627 reports

2023-09-14 • 0x0v1

SuperBear RAT was used against civil society targets and arrived through an AutoIT-based loader that hollowed explorer.exe, decrypted an embedded payload, and injected the PE into memory. The RAT created the mutex BEARLDR-EURJ-RHRHR, contacted hironchk[.]…

#Kimsuky #SuperBear
2023-09-14 • Ahnlab

AhnLab ASEC observed malicious LNK files distributed to South Korean users under a National Tax Service tax-explanation theme. The suspected email-delivered ZIP downloaded from file.gdrive001.com contained a large dummy-padded LNK that ran PowerShell, ope…

#LNK
2023-09-13 • Rekt

REKT reported that CoinEx lost about $54.3 million after hot wallets were drained across thirteen chains, with initial suspicious outflows flagged by Cyvers. The source says funds were rapidly moved from ETH, TRON, MATIC and other wallets, swapped back in…

#Cryptocurrency #CoinEx