home.social

#anydesk — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #anydesk, aggregated by home.social.

  1. From Invoice to AnyDesk: Uncovering a Phishing Campaign Targeting Russian Aerospace Organizations

    A sophisticated spear-phishing campaign targeting Russian aerospace and aviation organizations has been identified, likely attributed to the Rare Werewolf threat group. The attack begins with fraudulent emails impersonating a legitimate Russian aerospace research institute, delivering password-protected archives containing malicious installers. The campaign employs living-off-the-land techniques, abusing legitimate tools including AnyDesk, Blat, WinRAR, and Tray Minimizer to establish persistent remote access. The attack chain deploys portable AnyDesk with unattended access configured using a predefined password, exfiltrates configuration data via SMTP to attacker-controlled infrastructure, and establishes persistence through scheduled tasks. The operators conceal their activities by minimizing the AnyDesk interface and removing forensic artifacts. This methodology aligns with previously documented Rare Werewolf campaigns targeting strategically important sectors across Russia, Belarus, and Kazakhstan, par...

    Pulse ID: 6a4f858d17f60f10d1e16c2c
    Pulse Link: otx.alienvault.com/pulse/6a4f8
    Pulse Author: AlienVault
    Created: 2026-07-09 11:27:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AnyDesk #Belarus #CyberSecurity #Email #InfoSec #Kazakhstan #Nim #OTX #OpenThreatExchange #Password #Phishing #RAT #Russia #SpearPhishing #Troll #WinRAR #Word #bot #AlienVault

  2. From Invoice to AnyDesk: Uncovering a Phishing Campaign Targeting Russian Aerospace Organizations

    A sophisticated spear-phishing campaign targeting Russian aerospace and aviation organizations has been identified, likely attributed to the Rare Werewolf threat group. The attack begins with fraudulent emails impersonating a legitimate Russian aerospace research institute, delivering password-protected archives containing malicious installers. The campaign employs living-off-the-land techniques, abusing legitimate tools including AnyDesk, Blat, WinRAR, and Tray Minimizer to establish persistent remote access. The attack chain deploys portable AnyDesk with unattended access configured using a predefined password, exfiltrates configuration data via SMTP to attacker-controlled infrastructure, and establishes persistence through scheduled tasks. The operators conceal their activities by minimizing the AnyDesk interface and removing forensic artifacts. This methodology aligns with previously documented Rare Werewolf campaigns targeting strategically important sectors across Russia, Belarus, and Kazakhstan, par...

    Pulse ID: 6a4f858d17f60f10d1e16c2c
    Pulse Link: otx.alienvault.com/pulse/6a4f8
    Pulse Author: AlienVault
    Created: 2026-07-09 11:27:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AnyDesk #Belarus #CyberSecurity #Email #InfoSec #Kazakhstan #Nim #OTX #OpenThreatExchange #Password #Phishing #RAT #Russia #SpearPhishing #Troll #WinRAR #Word #bot #AlienVault

  3. Went to the village shop to get some food and returned to find the PC fully locked up ( needed a power cycle to restart!)

    I suspect this is more fault of #browsers with multiple tabs left open (there's an open issue for this on #Firefox) than any flaw with #LinuxMint itself, on top of websites being more bloated and #adtech scripts and #adblockers fighting one another.

    Successfully installed #Anydesk on #Linux PC, so can access #XFCE desktop remotely from my Windows laptop (we use Anydesk a lot for remote support)

  4. Went to the village shop to get some food and returned to find the PC fully locked up ( needed a power cycle to restart!)

    I suspect this is more fault of #browsers with multiple tabs left open (there's an open issue for this on #Firefox) than any flaw with #LinuxMint itself, on top of websites being more bloated and #adtech scripts and #adblockers fighting one another.

    Successfully installed #Anydesk on #Linux PC, so can access #XFCE desktop remotely from my Windows laptop (we use Anydesk a lot for remote support)

  5. full uninstall of Anydesk from macOS

    I found myself needing to completely remove the AnyDesk remote assistance software. The normal procedures aren't enough, and you have to go into the file system details to remove all folders and settings. So I'm writing this post as a reminder to myself. I'll open the command line in Terminal and issue the following commands: sudo rm -rf /Applications/AnyDesk.apprm -rf ~/.anydesksudo rm -rf /etc/anydeskrm -rf ~/Library/Application\ Support/AnyDeskrm -rf ~/Library/Logs/AnyDeskrm -f […]

    nicolalosito.it/2026/01/13/ful

  6. Lees tip -> Tilburg: man doet zich voor als FIOD-medewerker en steelt geld en sieraden | Een man in Tilburg is opgelicht door iemand die zich voordeed als FIOD-medewerker. De politie zoekt de verdachte en roept getuigen op zich te melden. | #Anydesk #cybercrime #Fiod #fraude #geld #MeldMisdaadAnoniem #oplichting #Opsporingstiplijn #politie #politieonderzoek #sieraden #tilburg #Verdachte |

    hbpmedia.nl/fiod-oplichter-til

  7. Lees tip -> Tilburg: man doet zich voor als FIOD-medewerker en steelt geld en sieraden | Een man in Tilburg is opgelicht door iemand die zich voordeed als FIOD-medewerker. De politie zoekt de verdachte en roept getuigen op zich te melden. | #Anydesk #cybercrime #Fiod #fraude #geld #MeldMisdaadAnoniem #oplichting #Opsporingstiplijn #politie #politieonderzoek #sieraden #tilburg #Verdachte |

    hbpmedia.nl/fiod-oplichter-til

  8. I've started gradually replacing #Anydesk and #Teamviewer on all desktops I provide support for with #RustDesk.

    rustdesk.com/

    Sometimes I am deciding, sometimes the owner does, depending on my role with them! Slow but steady path to software freedom and privacy.

    This is a #Chromebook showing #RustDesk after replacing #ChromeOS with #Debian #Mate - in Spanish 😎

    #GAFAM #GoLinux #photos #EO10Challenges #LGDL #degoogle

  9. I've started gradually replacing #Anydesk and #Teamviewer on all desktops I provide support for with #RustDesk.

    rustdesk.com/

    Sometimes I am deciding, sometimes the owner does, depending on my role with them! Slow but steady path to software freedom and privacy.

    This is a #Chromebook showing #RustDesk after replacing #ChromeOS with #Debian #Mate - in Spanish 😎

    #GAFAM #GoLinux #photos #EO10Challenges #LGDL #degoogle

  10. I've started gradually replacing #Anydesk and #Teamviewer on all desktops I provide support for with #RustDesk.

    rustdesk.com/

    Sometimes I am deciding, sometimes the owner does, depending on my role with them! Slow but steady path to software freedom and privacy.

    This is a #Chromebook showing #RustDesk after replacing #ChromeOS with #Debian #Mate - in Spanish 😎

    #GAFAM #GoLinux #photos #EO10Challenges #LGDL #degoogle

  11. I've started gradually replacing #Anydesk and #Teamviewer on all desktops I provide support for with #RustDesk.

    rustdesk.com/

    Sometimes I am deciding, sometimes the owner does, depending on my role with them! Slow but steady path to software freedom and privacy.

    This is a #Chromebook showing #RustDesk after replacing #ChromeOS with #Debian #Mate - in Spanish 😎

    #GAFAM #GoLinux #photos #EO10Challenges #LGDL #degoogle

  12. I've started gradually replacing #Anydesk and #Teamviewer on all desktops I provide support for with #RustDesk.

    rustdesk.com/

    Sometimes I am deciding, sometimes the owner does, depending on my role with them! Slow but steady path to software freedom and privacy.

    This is a #Chromebook showing #RustDesk after replacing #ChromeOS with #Debian #Mate - in Spanish 😎

    #GAFAM #GoLinux #photos #EO10Challenges #LGDL #degoogle

  13. RustDesk: удалённый десктоп через свой сервер ретрансляции

    RustDesk — приложение для удалённого рабочего стола с открытым исходным кодом, разработанное для самохостинга в качестве альтернативы TeamViewer. Название такое, потому что программа написана на Rust. Работает из коробки, не требует конфигурации. Если установить сервер синхронизации на своём хостинге, то любые машины в интернете могут синхронизироваться и устанавливать соединение через наш сервер для удалённого управления рабочими столами друг друга. Трафик идёт напрямую между ними, но если это невозможно — тоже через сервер, до 3 Мбит/с (1920×1080). Клиентское приложение есть для iOS и Android (на КДПВ), что позволяет со смартфона управлять рабочим столом Windows, Linux и MacOS (и наоборот), а также обмениваться файлами. Есть ещё веб-клиент .

    habr.com/ru/companies/ruvds/ar

    #ruvds_статьи #RustDesk #самохостинг #P2P_Remote_Desktop #удаленный_рабочий_стол #P2P #TeamViewer #AnyDesk #Remotely #Screego #MeshCentral #Tactical_RMM #Flutter #Sciter #Rust #NAT_Loopback #PM2 #NSSM #файрвол

  14. #DWService et son #DWAgent 😎
    Intégré à l' @Emmabuntus depuis un moment 👍
    Je vous le recommande 🫵
    C'est simple, chez moi, il remplace petit à petit #AnyDesk 😮
    ▶️ dwservice.net/fr/home.html

  15. #DWService et son #DWAgent 😎
    Intégré à l' @Emmabuntus depuis un moment 👍
    Je vous le recommande 🫵
    C'est simple, chez moi, il remplace petit à petit #AnyDesk 😮
    ▶️ dwservice.net/fr/home.html

  16. The #SophosMDR team also discovered cases where threat actors targeting #PaperCut were abusing the bitsadmin.exe Windows application to download payloads. #BITSAdmin is commonly abused by active adversaries as a "living off the land binary" or #LOLbin, handy for accomplishing the task of downloading payloads.

    The tools exploited in the attacks have included what we refer to as “dual-use agents,” used both legitimately by IT staff and maliciously by attackers. At the time of writing, Sophos has observed the abuse of #AnyDesk, #Atera, #Synchro, #TightVNC, #NetSupport, and #DWAgent remote management tools across multiple campaigns.

    4/6

  17. The #SophosMDR team also discovered cases where threat actors targeting #PaperCut were abusing the bitsadmin.exe Windows application to download payloads. #BITSAdmin is commonly abused by active adversaries as a "living off the land binary" or #LOLbin, handy for accomplishing the task of downloading payloads.

    The tools exploited in the attacks have included what we refer to as “dual-use agents,” used both legitimately by IT staff and maliciously by attackers. At the time of writing, Sophos has observed the abuse of #AnyDesk, #Atera, #Synchro, #TightVNC, #NetSupport, and #DWAgent remote management tools across multiple campaigns.

    4/6