~Morphisec~
A targeted Tuoni C2 attack uses steganography and AI-enhanced fileless techniques to evade detection and stage ransomware.
-
IOCs: (None identified)
-
#C2 #Fileless #ThreatIntel #Tuoni
Latest posts tagged with #fileless on Bluesky
~Morphisec~
A targeted Tuoni C2 attack uses steganography and AI-enhanced fileless techniques to evade detection and stage ransomware.
-
IOCs: (None identified)
-
#C2 #Fileless #ThreatIntel #Tuoni
Matrix Push C2 sfrutta le notifiche push del browser per phishing e malware fileless, con tracking avanzato e attacchi cross-platform.
#blackfog #comandoecontrollo(C2) #fileless #MatrixPushC2
www.matricedigitale.it/2025/11/24/m...
#MatrixPushC2 Uses #Browser #Notifications for #Fileless, Cross-Platform #Phishing Attacks. #BadActors are leveraging browser notifications as a vector for phishing #attacks to distribute #malicious links.
thehackernews.com/2025/11/matr...
Campagna phishing con file SVG in Ucraina distribuisce Amatera Stealer e PureMiner: analisi tecnica, IOCs e contromisure operative.
#AmateraStealer #CountLoader #fileless #FortiGuardLabs #PureMiner #SVG #ucraina
www.matricedigitale.it/2025/09/27/p...
This widely used Remote Monitoring tool is being used to deploy AsyncRAT to steal passwords | TechRadar www.techradar.com/pr...
#cybersecurity #ScreenConnect #AsyncRAT #fileless #malware
'EggStreme Malware: Unpacking a New APT Framework Targeting a Philippine Military Company'
www.bitdefender.com/en-gb/blog/b...
#CyberSecurity #APT #Fileless #DLLSideloading #Keylogger
EggStreme, malware fileless APT cinese nell’APAC: gRPC C2, DLL sideloading, iniezioni in memoria e TTP avanzate; analisi, impatti e difese prioritarie.
#apt #bitdefender #cina #EggStreme #fileless #keylogger #malware #sideloading
www.matricedigitale.it/2025/09/11/e...
Fileless EggStreme Malware Campaign Attributed to Chinese APT Against Military Organisations Threat Group – China-based APT actors Threat Type – Fileless malware and espionage backdoor Exploite...
#Malware, #EggStreme, #Fileless #Malware, #DLL […]
[Original post on cybersecsentinel.com]
APT37 colpisce la Corea del Sud con HanKook Phantom: LNK fileless, RokRAT, esche locali e esfiltrazione cloud stealth.
#apt37 #cloud #CoreadelNord #CoreadelSud #fileless #HanKookPhantom #phishing #RokRAT #ScarCruft
www.matricedigitale.it/2025/09/01/a...
PSLoramyra ghosted your SSD—hex slime in RAM, RegSvcs.exe injections, Shellter-leaked Lumma cavalry via GitHub ads. Still counting hashes? 👻🧪
Read the autopsy → blog.alphahunt.io/psloramyra-f...
#AlphaHunt #CyberSecurity #Fileless #Malware
PSLoramyra ghosted your SSD—squats in RAM with hex-slime & Shellter-leaked Lumma sidekicks. GitHub malvertising spread the party far and wide. Ready to YARA-up or just count hashes?
Read the autopsy & subscribe: blog.alphahunt.io/psloramyra-f...
#AlphaHunt #CyberSecurity #Fileless #Malware
PSLoramyra just ghosted your SSD—HEX-slimed payloads, RegSvcs.exe injections, and Shellter-leaked loaders now subletting your RAM.
Ready to YARA-up or keep counting hashes?
Read the autopsy ➡️ blog.alphahunt.io/psloramyra-f...
#AlphaHunt #CyberSecurity #Fileless #Malware
PSLoramyra just ghosted your SSD—HEX payloads in RAM, RegSvcs.exe injections, DYLD hijacks on macOS. 🫥🔥 VMRay YARA or bust.
Read & subscribe ➡️ blog.alphahunt.io/psloramyra-f... #AlphaHunt #CyberSecurity #Fileless 😈🧪
Nuova variante Interlock RAT diffusa tramite Kongtuke FileFix: analisi tecnica, persistenza fileless, impatti su dati e sicurezza aziendale, strategie di difesa e risposta.
#fileless #interlock #KongtukeFileFix #Powershell #RAT
www.matricedigitale.it/2025/07/15/k...
DeepSeek sfrutta Sainbox RAT e rootkit kernel-level con delivery fileless e attacco multi-stage: nuove sfide per la detection e la cyber deception enterprise.
#deepseek #dropper #fileless #RAT #rootkit #sainbox
www.matricedigitale.it/2025/06/27/d...
#Fileless #malware is the state-of-the-art now, but how to detect it? How to monitor memory without huge performance impact? What if the memory was malware-aware? What if we had an #AV inside the memory by default? Delivering only scanned data to the CPU: marcusbotacin.github.io/publication/...