home.social

#clipboard — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #clipboard, aggregated by home.social.

fetched live
  1. Linkedin.com in console ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    ..

    Make sure you don't have ANYTHING important in the clipboard buffer.

    #linkedin #clipboard

  2. Linkedin.com in console ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    ..

    Make sure you don't have ANYTHING important in the clipboard buffer.

    #linkedin #clipboard

  3. Linkedin.com in console ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    ..

    Make sure you don't have ANYTHING important in the clipboard buffer.

    #linkedin #clipboard

  4. Linkedin.com in console ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-read”. ..
    Feature Policy: Skipping unsupported feature name “clipboard-write”. ..
    ..

    Make sure you don't have ANYTHING important in the clipboard buffer.

    #linkedin #clipboard

  5. 🚀 Breaking news: #XWayland rises like a phoenix from its 2-year slumber with a #release name that sounds like a version number's evil twin. 📅 It's 2026, and we finally have #clipboard #magic, because clearly, that's what the people have been clamoring for all this time. 🤯
    lists.x.org/archives/xorg/2026 #TechNews #HackerNews #ngated

  6. 🚀 Breaking news: #XWayland rises like a phoenix from its 2-year slumber with a #release name that sounds like a version number's evil twin. 📅 It's 2026, and we finally have #clipboard #magic, because clearly, that's what the people have been clamoring for all this time. 🤯
    lists.x.org/archives/xorg/2026 #TechNews #HackerNews #ngated

  7. 🚀 Breaking news: #XWayland rises like a phoenix from its 2-year slumber with a #release name that sounds like a version number's evil twin. 📅 It's 2026, and we finally have #clipboard #magic, because clearly, that's what the people have been clamoring for all this time. 🤯
    lists.x.org/archives/xorg/2026 #TechNews #HackerNews #ngated

  8. 🚀 Breaking news: #XWayland rises like a phoenix from its 2-year slumber with a #release name that sounds like a version number's evil twin. 📅 It's 2026, and we finally have #clipboard #magic, because clearly, that's what the people have been clamoring for all this time. 🤯
    lists.x.org/archives/xorg/2026 #TechNews #HackerNews #ngated

  9. 🚀 Breaking news: #XWayland rises like a phoenix from its 2-year slumber with a #release name that sounds like a version number's evil twin. 📅 It's 2026, and we finally have #clipboard #magic, because clearly, that's what the people have been clamoring for all this time. 🤯
    lists.x.org/archives/xorg/2026 #TechNews #HackerNews #ngated

  10. Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)

    A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This injector employs multiple UAC bypass techniques including SSPI-based authentication and CMSTPLUA COM exploitation to gain elevated privileges. It then performs BYOVD attacks using the vulnerable DCRCVDrv.sys driver to terminate security products through kernel-level access. Following security product neutralization, the injector uses process hollowing to inject PhantomStealer into the legitimate AddInProcess32.exe process. PhantomStealer then executes comprehensive information theft including keylogging, screen capture, browser credentials, cryptocurrency wallet data, and clipboard manipulation to replace wallet addresses with attacker-controlled ones.

    Pulse ID: 6a855b37f82f7d0075b2f111
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 07:28:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #Email #InfoSec #InformationTheft #LUA #OTX #OpenThreatExchange #Phishing #Troll #bot #cryptocurrency #AlienVault

  11. Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)

    A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This injector employs multiple UAC bypass techniques including SSPI-based authentication and CMSTPLUA COM exploitation to gain elevated privileges. It then performs BYOVD attacks using the vulnerable DCRCVDrv.sys driver to terminate security products through kernel-level access. Following security product neutralization, the injector uses process hollowing to inject PhantomStealer into the legitimate AddInProcess32.exe process. PhantomStealer then executes comprehensive information theft including keylogging, screen capture, browser credentials, cryptocurrency wallet data, and clipboard manipulation to replace wallet addresses with attacker-controlled ones.

    Pulse ID: 6a855b37f82f7d0075b2f111
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 07:28:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #Email #InfoSec #InformationTheft #LUA #OTX #OpenThreatExchange #Phishing #Troll #bot #cryptocurrency #AlienVault

  12. Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)

    A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This injector employs multiple UAC bypass techniques including SSPI-based authentication and CMSTPLUA COM exploitation to gain elevated privileges. It then performs BYOVD attacks using the vulnerable DCRCVDrv.sys driver to terminate security products through kernel-level access. Following security product neutralization, the injector uses process hollowing to inject PhantomStealer into the legitimate AddInProcess32.exe process. PhantomStealer then executes comprehensive information theft including keylogging, screen capture, browser credentials, cryptocurrency wallet data, and clipboard manipulation to replace wallet addresses with attacker-controlled ones.

    Pulse ID: 6a855b37f82f7d0075b2f111
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 07:28:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #Email #InfoSec #InformationTheft #LUA #OTX #OpenThreatExchange #Phishing #Troll #bot #cryptocurrency #AlienVault

  13. Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)

    A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This injector employs multiple UAC bypass techniques including SSPI-based authentication and CMSTPLUA COM exploitation to gain elevated privileges. It then performs BYOVD attacks using the vulnerable DCRCVDrv.sys driver to terminate security products through kernel-level access. Following security product neutralization, the injector uses process hollowing to inject PhantomStealer into the legitimate AddInProcess32.exe process. PhantomStealer then executes comprehensive information theft including keylogging, screen capture, browser credentials, cryptocurrency wallet data, and clipboard manipulation to replace wallet addresses with attacker-controlled ones.

    Pulse ID: 6a855b37f82f7d0075b2f111
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 07:28:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #Email #InfoSec #InformationTheft #LUA #OTX #OpenThreatExchange #Phishing #Troll #bot #cryptocurrency #AlienVault

  14. Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)

    A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This injector employs multiple UAC bypass techniques including SSPI-based authentication and CMSTPLUA COM exploitation to gain elevated privileges. It then performs BYOVD attacks using the vulnerable DCRCVDrv.sys driver to terminate security products through kernel-level access. Following security product neutralization, the injector uses process hollowing to inject PhantomStealer into the legitimate AddInProcess32.exe process. PhantomStealer then executes comprehensive information theft including keylogging, screen capture, browser credentials, cryptocurrency wallet data, and clipboard manipulation to replace wallet addresses with attacker-controlled ones.

    Pulse ID: 6a855b37f82f7d0075b2f111
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 07:28:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #Email #InfoSec #InformationTheft #LUA #OTX #OpenThreatExchange #Phishing #Troll #bot #cryptocurrency #AlienVault

  15. Phantom Stealer Malware Uses Steganography and Process Injection to Data Theft

    Phantom Stealer is a .NET based information-stealing malware that uses
    PNG steganography, PowerShell-based process injection and defense evasion techniques to steal browser credentials, cryptocurrency wallets, cookies and sensitive files. The malware also uses clipboard manipulation to redirect cryptocurrency transactions and employs multiple techniques to avoid detection.

    Pulse ID: 6a82666881d78521845bd0af
    Pulse Link: otx.alienvault.com/pulse/6a826
    Pulse Author: cryptocti
    Created: 2026-08-17 01:39:52

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #Cookies #CyberSecurity #DataTheft #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #Steganography #bot #cryptocurrency #cryptocti

  16. Phantom Stealer Malware Uses Steganography and Process Injection to Data Theft

    Phantom Stealer is a .NET based information-stealing malware that uses
    PNG steganography, PowerShell-based process injection and defense evasion techniques to steal browser credentials, cryptocurrency wallets, cookies and sensitive files. The malware also uses clipboard manipulation to redirect cryptocurrency transactions and employs multiple techniques to avoid detection.

    Pulse ID: 6a82666881d78521845bd0af
    Pulse Link: otx.alienvault.com/pulse/6a826
    Pulse Author: cryptocti
    Created: 2026-08-17 01:39:52

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #Cookies #CyberSecurity #DataTheft #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #Steganography #bot #cryptocurrency #cryptocti

  17. Phantom Stealer Malware Uses Steganography and Process Injection to Data Theft

    Phantom Stealer is a .NET based information-stealing malware that uses
    PNG steganography, PowerShell-based process injection and defense evasion techniques to steal browser credentials, cryptocurrency wallets, cookies and sensitive files. The malware also uses clipboard manipulation to redirect cryptocurrency transactions and employs multiple techniques to avoid detection.

    Pulse ID: 6a82666881d78521845bd0af
    Pulse Link: otx.alienvault.com/pulse/6a826
    Pulse Author: cryptocti
    Created: 2026-08-17 01:39:52

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #Cookies #CyberSecurity #DataTheft #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #Steganography #bot #cryptocurrency #cryptocti

  18. Phantom Stealer Malware Uses Steganography and Process Injection to Data Theft

    Phantom Stealer is a .NET based information-stealing malware that uses
    PNG steganography, PowerShell-based process injection and defense evasion techniques to steal browser credentials, cryptocurrency wallets, cookies and sensitive files. The malware also uses clipboard manipulation to redirect cryptocurrency transactions and employs multiple techniques to avoid detection.

    Pulse ID: 6a82666881d78521845bd0af
    Pulse Link: otx.alienvault.com/pulse/6a826
    Pulse Author: cryptocti
    Created: 2026-08-17 01:39:52

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #Cookies #CyberSecurity #DataTheft #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #Steganography #bot #cryptocurrency #cryptocti

  19. Phantom Stealer Malware Uses Steganography and Process Injection to Data Theft

    Phantom Stealer is a .NET based information-stealing malware that uses
    PNG steganography, PowerShell-based process injection and defense evasion techniques to steal browser credentials, cryptocurrency wallets, cookies and sensitive files. The malware also uses clipboard manipulation to redirect cryptocurrency transactions and employs multiple techniques to avoid detection.

    Pulse ID: 6a82666881d78521845bd0af
    Pulse Link: otx.alienvault.com/pulse/6a826
    Pulse Author: cryptocti
    Created: 2026-08-17 01:39:52

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #Cookies #CyberSecurity #DataTheft #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #Steganography #bot #cryptocurrency #cryptocti

  20. Google is working on a feature for Gboard that allows users to customize how long unpinned items stay in their clipboard history

    It will let users choose to keep unpinned clipboard data for up to 24 hours.

    ✅ Details with screenshots - androidauthority.com/gboard-cl

    #google #android #tech #news #clipboard

  21. Google is working on a feature for Gboard that allows users to customize how long unpinned items stay in their clipboard history

    It will let users choose to keep unpinned clipboard data for up to 24 hours.

    ✅ Details with screenshots - androidauthority.com/gboard-cl

    #google #android #tech #news #clipboard

  22. Google is working on a feature for Gboard that allows users to customize how long unpinned items stay in their clipboard history

    It will let users choose to keep unpinned clipboard data for up to 24 hours.

    ✅ Details with screenshots - androidauthority.com/gboard-cl

    #google #android #tech #news #clipboard

  23. Google is working on a feature for Gboard that allows users to customize how long unpinned items stay in their clipboard history

    It will let users choose to keep unpinned clipboard data for up to 24 hours.

    ✅ Details with screenshots - androidauthority.com/gboard-cl

    #google #android #tech #news #clipboard

  24. Windows-Zugriff auf iPhone-Zwischenablage: Apple beugt sich der EU

    Besitzer eines Windows-PCs können demnächst Inhalte, die auf einem iPhone in die Zwischenablage geschoben wurden, nahtlos übernehmen –…
    #EuropeSays #EU #Europa #Apple #Clipboard #Copy&Paste #EuropäischeUnion #Interoperabilität #iOS #iPhone #IT #Microsoft #Mobiles #Windows #Zwischenablage
    europesays.com/europa/78818/

  25. My first #release on github! #btText v1.0 is out (MIT LICENSE).
    Description: btText is a lightweight and #accessible Windows desktop application for managing and reusing text #snippets. It keeps frequently used text in a searchable SQLite database and can paste snippets into other Windows applications through the #clipboard. Optional #hotstrings and configurable global hotkeys make common snippets available without leaving the active application.
    Runs on Windows 11 and is written in Python.
    github.com/adkurz/btText

  26. My first #release on github! #btText v1.0 is out (MIT LICENSE).
    Description: btText is a lightweight and #accessible Windows desktop application for managing and reusing text #snippets. It keeps frequently used text in a searchable SQLite database and can paste snippets into other Windows applications through the #clipboard. Optional #hotstrings and configurable global hotkeys make common snippets available without leaving the active application.
    Runs on Windows 11 and is written in Python.
    github.com/adkurz/btText

  27. Leave it to Google to make a “Copy to clipboard” button that

    - Takes a non-zero amount of time to complete
    - Shows a spinner
    - Might fail

    Thanks @grishka for the video

    #Google #Clipboard #Spinner

  28. Leave it to Google to make a “Copy to clipboard” button that

    - Takes a non-zero amount of time to complete
    - Shows a spinner
    - Might fail

    Thanks @grishka for the video

    #Google #Clipboard #Spinner

  29. Leave it to Google to make a “Copy to clipboard” button that

    - Takes a non-zero amount of time to complete
    - Shows a spinner
    - Might fail

    Thanks @grishka for the video

    #Google #Clipboard #Spinner

  30. Leave it to Google to make a “Copy to clipboard” button that

    - Takes a non-zero amount of time to complete
    - Shows a spinner
    - Might fail

    Thanks @grishka for the video

    #Google #Clipboard #Spinner

  31. Leave it to Google to make a “Copy to clipboard” button that

    - Takes a non-zero amount of time to complete
    - Shows a spinner
    - Might fail

    Thanks @grishka for the video

    #Google #Clipboard #Spinner

  32. Phantom Stealer Unmasked: Shellcode, Steganography, and Credential Theft

    Phantom Stealer is a .NET-based credential-harvesting malware that collects browser credentials, saved passwords, session cookies, cryptocurrency wallet files, and system fingerprints from infected machines. Distributed through phishing emails, cracked software, and malicious links on Discord and Telegram, it employs multiple loader variants including steganography-based delivery and PowerShell shellcode injection. The malware uses extensive anti-analysis techniques including virtualization detection, API patching to disable AMSI and ETW, and timing-based sandbox evasion. It targets Chromium and Gecko-based browsers, cryptocurrency wallets, FileZilla credentials, WinSCP configurations, and Outlook profiles. Additional capabilities include keylogging, screen capture, clipboard monitoring with cryptocurrency address replacement, and Wi-Fi credential theft. The malware achieves persistence through registry Run keys or Startup folder entries.

    Pulse ID: 6a6a0753fc3cdb9a380c795d
    Pulse Link: otx.alienvault.com/pulse/6a6a0
    Pulse Author: AlienVault
    Created: 2026-07-29 13:59:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CodeInjection #Cookies #CyberSecurity #Discord #Email #FileZilla #InfoSec #Mac #Malware #NET #OTX #OpenThreatExchange #Outlook #Password #Passwords #Phishing #PowerShell #RAT #ShellCode #Steganography #Telegram #WinSCP #Word #bot #cryptocurrency #AlienVault

  33. Phantom Stealer Unmasked: Shellcode, Steganography, and Credential Theft

    Phantom Stealer is a .NET-based credential-harvesting malware that collects browser credentials, saved passwords, session cookies, cryptocurrency wallet files, and system fingerprints from infected machines. Distributed through phishing emails, cracked software, and malicious links on Discord and Telegram, it employs multiple loader variants including steganography-based delivery and PowerShell shellcode injection. The malware uses extensive anti-analysis techniques including virtualization detection, API patching to disable AMSI and ETW, and timing-based sandbox evasion. It targets Chromium and Gecko-based browsers, cryptocurrency wallets, FileZilla credentials, WinSCP configurations, and Outlook profiles. Additional capabilities include keylogging, screen capture, clipboard monitoring with cryptocurrency address replacement, and Wi-Fi credential theft. The malware achieves persistence through registry Run keys or Startup folder entries.

    Pulse ID: 6a6a0753fc3cdb9a380c795d
    Pulse Link: otx.alienvault.com/pulse/6a6a0
    Pulse Author: AlienVault
    Created: 2026-07-29 13:59:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CodeInjection #Cookies #CyberSecurity #Discord #Email #FileZilla #InfoSec #Mac #Malware #NET #OTX #OpenThreatExchange #Outlook #Password #Passwords #Phishing #PowerShell #RAT #ShellCode #Steganography #Telegram #WinSCP #Word #bot #cryptocurrency #AlienVault

  34. Phantom Stealer Unmasked: Shellcode, Steganography, and Credential Theft

    Phantom Stealer is a .NET-based credential-harvesting malware that collects browser credentials, saved passwords, session cookies, cryptocurrency wallet files, and system fingerprints from infected machines. Distributed through phishing emails, cracked software, and malicious links on Discord and Telegram, it employs multiple loader variants including steganography-based delivery and PowerShell shellcode injection. The malware uses extensive anti-analysis techniques including virtualization detection, API patching to disable AMSI and ETW, and timing-based sandbox evasion. It targets Chromium and Gecko-based browsers, cryptocurrency wallets, FileZilla credentials, WinSCP configurations, and Outlook profiles. Additional capabilities include keylogging, screen capture, clipboard monitoring with cryptocurrency address replacement, and Wi-Fi credential theft. The malware achieves persistence through registry Run keys or Startup folder entries.

    Pulse ID: 6a6a0753fc3cdb9a380c795d
    Pulse Link: otx.alienvault.com/pulse/6a6a0
    Pulse Author: AlienVault
    Created: 2026-07-29 13:59:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CodeInjection #Cookies #CyberSecurity #Discord #Email #FileZilla #InfoSec #Mac #Malware #NET #OTX #OpenThreatExchange #Outlook #Password #Passwords #Phishing #PowerShell #RAT #ShellCode #Steganography #Telegram #WinSCP #Word #bot #cryptocurrency #AlienVault

  35. Phantom Stealer Unmasked: Shellcode, Steganography, and Credential Theft

    Phantom Stealer is a .NET-based credential-harvesting malware that collects browser credentials, saved passwords, session cookies, cryptocurrency wallet files, and system fingerprints from infected machines. Distributed through phishing emails, cracked software, and malicious links on Discord and Telegram, it employs multiple loader variants including steganography-based delivery and PowerShell shellcode injection. The malware uses extensive anti-analysis techniques including virtualization detection, API patching to disable AMSI and ETW, and timing-based sandbox evasion. It targets Chromium and Gecko-based browsers, cryptocurrency wallets, FileZilla credentials, WinSCP configurations, and Outlook profiles. Additional capabilities include keylogging, screen capture, clipboard monitoring with cryptocurrency address replacement, and Wi-Fi credential theft. The malware achieves persistence through registry Run keys or Startup folder entries.

    Pulse ID: 6a6a0753fc3cdb9a380c795d
    Pulse Link: otx.alienvault.com/pulse/6a6a0
    Pulse Author: AlienVault
    Created: 2026-07-29 13:59:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CodeInjection #Cookies #CyberSecurity #Discord #Email #FileZilla #InfoSec #Mac #Malware #NET #OTX #OpenThreatExchange #Outlook #Password #Passwords #Phishing #PowerShell #RAT #ShellCode #Steganography #Telegram #WinSCP #Word #bot #cryptocurrency #AlienVault

  36. Phantom Stealer Unmasked: Shellcode, Steganography, and Credential Theft

    Phantom Stealer is a .NET-based credential-harvesting malware that collects browser credentials, saved passwords, session cookies, cryptocurrency wallet files, and system fingerprints from infected machines. Distributed through phishing emails, cracked software, and malicious links on Discord and Telegram, it employs multiple loader variants including steganography-based delivery and PowerShell shellcode injection. The malware uses extensive anti-analysis techniques including virtualization detection, API patching to disable AMSI and ETW, and timing-based sandbox evasion. It targets Chromium and Gecko-based browsers, cryptocurrency wallets, FileZilla credentials, WinSCP configurations, and Outlook profiles. Additional capabilities include keylogging, screen capture, clipboard monitoring with cryptocurrency address replacement, and Wi-Fi credential theft. The malware achieves persistence through registry Run keys or Startup folder entries.

    Pulse ID: 6a6a0753fc3cdb9a380c795d
    Pulse Link: otx.alienvault.com/pulse/6a6a0
    Pulse Author: AlienVault
    Created: 2026-07-29 13:59:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CodeInjection #Cookies #CyberSecurity #Discord #Email #FileZilla #InfoSec #Mac #Malware #NET #OTX #OpenThreatExchange #Outlook #Password #Passwords #Phishing #PowerShell #RAT #ShellCode #Steganography #Telegram #WinSCP #Word #bot #cryptocurrency #AlienVault

  37. Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan

    Two npm beta releases in the @joyfill namespace were compromised with an import-time JavaScript implant that uses blockchain transactions on Tron, Aptos, and BNB Smart Chain to retrieve encrypted payloads. The malicious code leads to a 77 KB Node.js remote-access trojan identified as DEV#POPPER, which establishes Socket.IO connections for remote control and can execute commands, upload files, read clipboard data, and persist through developer tools. A parallel execution branch downloads additional payloads including an 82 KB Python infostealer assessed to be OmniStealer, targeting browser credentials, Git configurations, and wallet extensions. The compromise affected @joyfill/layouts version 0.1.2-2773.beta.0 and @joyfill/components version 4.0.0-rc24-2773-beta.4, with approximately 16,000 weekly downloads. The loader exhibits exact code overlap with the PolinRider family and DEV#POPPER operations.

    Pulse ID: 6a696c951815449cad089687
    Pulse Link: otx.alienvault.com/pulse/6a696
    Pulse Author: AlienVault
    Created: 2026-07-29 02:59:33

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BlockChain #Browser #Clipboard #CyberSecurity #InfoSec #InfoStealer #Java #JavaScript #NPM #Nodejs #OTX #OpenThreatExchange #Python #RAT #RemoteAccessTrojan #Trojan #bot #AlienVault

  38. Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan

    Two npm beta releases in the @joyfill namespace were compromised with an import-time JavaScript implant that uses blockchain transactions on Tron, Aptos, and BNB Smart Chain to retrieve encrypted payloads. The malicious code leads to a 77 KB Node.js remote-access trojan identified as DEV#POPPER, which establishes Socket.IO connections for remote control and can execute commands, upload files, read clipboard data, and persist through developer tools. A parallel execution branch downloads additional payloads including an 82 KB Python infostealer assessed to be OmniStealer, targeting browser credentials, Git configurations, and wallet extensions. The compromise affected @joyfill/layouts version 0.1.2-2773.beta.0 and @joyfill/components version 4.0.0-rc24-2773-beta.4, with approximately 16,000 weekly downloads. The loader exhibits exact code overlap with the PolinRider family and DEV#POPPER operations.

    Pulse ID: 6a696c951815449cad089687
    Pulse Link: otx.alienvault.com/pulse/6a696
    Pulse Author: AlienVault
    Created: 2026-07-29 02:59:33

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BlockChain #Browser #Clipboard #CyberSecurity #InfoSec #InfoStealer #Java #JavaScript #NPM #Nodejs #OTX #OpenThreatExchange #Python #RAT #RemoteAccessTrojan #Trojan #bot #AlienVault

  39. Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan

    Two npm beta releases in the @joyfill namespace were compromised with an import-time JavaScript implant that uses blockchain transactions on Tron, Aptos, and BNB Smart Chain to retrieve encrypted payloads. The malicious code leads to a 77 KB Node.js remote-access trojan identified as DEV#POPPER, which establishes Socket.IO connections for remote control and can execute commands, upload files, read clipboard data, and persist through developer tools. A parallel execution branch downloads additional payloads including an 82 KB Python infostealer assessed to be OmniStealer, targeting browser credentials, Git configurations, and wallet extensions. The compromise affected @joyfill/layouts version 0.1.2-2773.beta.0 and @joyfill/components version 4.0.0-rc24-2773-beta.4, with approximately 16,000 weekly downloads. The loader exhibits exact code overlap with the PolinRider family and DEV#POPPER operations.

    Pulse ID: 6a696c951815449cad089687
    Pulse Link: otx.alienvault.com/pulse/6a696
    Pulse Author: AlienVault
    Created: 2026-07-29 02:59:33

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BlockChain #Browser #Clipboard #CyberSecurity #InfoSec #InfoStealer #Java #JavaScript #NPM #Nodejs #OTX #OpenThreatExchange #Python #RAT #RemoteAccessTrojan #Trojan #bot #AlienVault

  40. Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan

    Two npm beta releases in the @joyfill namespace were compromised with an import-time JavaScript implant that uses blockchain transactions on Tron, Aptos, and BNB Smart Chain to retrieve encrypted payloads. The malicious code leads to a 77 KB Node.js remote-access trojan identified as DEV#POPPER, which establishes Socket.IO connections for remote control and can execute commands, upload files, read clipboard data, and persist through developer tools. A parallel execution branch downloads additional payloads including an 82 KB Python infostealer assessed to be OmniStealer, targeting browser credentials, Git configurations, and wallet extensions. The compromise affected @joyfill/layouts version 0.1.2-2773.beta.0 and @joyfill/components version 4.0.0-rc24-2773-beta.4, with approximately 16,000 weekly downloads. The loader exhibits exact code overlap with the PolinRider family and DEV#POPPER operations.

    Pulse ID: 6a696c951815449cad089687
    Pulse Link: otx.alienvault.com/pulse/6a696
    Pulse Author: AlienVault
    Created: 2026-07-29 02:59:33

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BlockChain #Browser #Clipboard #CyberSecurity #InfoSec #InfoStealer #Java #JavaScript #NPM #Nodejs #OTX #OpenThreatExchange #Python #RAT #RemoteAccessTrojan #Trojan #bot #AlienVault

  41. Two Joyfill npm Beta Releases Compromised to Deliver DEV#POPPER Remote Access Trojan

    Two npm beta releases in the @joyfill namespace were compromised with an import-time JavaScript implant that uses blockchain transactions on Tron, Aptos, and BNB Smart Chain to retrieve encrypted payloads. The malicious code leads to a 77 KB Node.js remote-access trojan identified as DEV#POPPER, which establishes Socket.IO connections for remote control and can execute commands, upload files, read clipboard data, and persist through developer tools. A parallel execution branch downloads additional payloads including an 82 KB Python infostealer assessed to be OmniStealer, targeting browser credentials, Git configurations, and wallet extensions. The compromise affected @joyfill/layouts version 0.1.2-2773.beta.0 and @joyfill/components version 4.0.0-rc24-2773-beta.4, with approximately 16,000 weekly downloads. The loader exhibits exact code overlap with the PolinRider family and DEV#POPPER operations.

    Pulse ID: 6a696c951815449cad089687
    Pulse Link: otx.alienvault.com/pulse/6a696
    Pulse Author: AlienVault
    Created: 2026-07-29 02:59:33

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BlockChain #Browser #Clipboard #CyberSecurity #InfoSec #InfoStealer #Java #JavaScript #NPM #Nodejs #OTX #OpenThreatExchange #Python #RAT #RemoteAccessTrojan #Trojan #bot #AlienVault

  42. iOS 27’s new paste shortcut kills the copy-and-paste menu

    Copy something, and the iOS 27 paste shortcut now pops up right above your keyboard, ready in a…
    #NewsBeep #News #Mobile #Apple #clipboard #iOS27 #Technology #UK #UnitedKingdom
    newsbeep.com/uk/708613/

  43. iOS 27’s new paste shortcut kills the copy-and-paste menu

    Copy something, and the iOS 27 paste shortcut now pops up right above your keyboard, ready in a…
    #NewsBeep #News #Mobile #Apple #AU #Australia #clipboard #iOS27 #Technology
    newsbeep.com/au/820601/

  44. iOS 27’s new paste shortcut kills the copy-and-paste menu

    Copy something, and the iOS 27 paste shortcut now pops up right above your keyboard, ready in a…
    #NewsBeep #News #Mobile #Apple #AU #Australia #clipboard #iOS27 #Technology
    newsbeep.com/au/820601/

  45. Need to copy an existing HTML table as text, markdown, and/or comma-separated values to the clipboard? Using just HTML and JavaScript?

    Developer advocate, and seasoned tech writer Raymond Camden (Code and Cats) has your back. The post is styled as a tutorial, with ample code samples.

    "Copying HTML Tables as Text, Markdown, and CSV"

    raymondcamden.com/2026/07/20/c

    #programming #html #javascript #markdown #csv #text #clipboard

  46. Need to copy an existing HTML table as text, markdown, and/or comma-separated values to the clipboard? Using just HTML and JavaScript?

    Developer advocate, and seasoned tech writer Raymond Camden (Code and Cats) has your back. The post is styled as a tutorial, with ample code samples.

    "Copying HTML Tables as Text, Markdown, and CSV"

    raymondcamden.com/2026/07/20/c

    #programming #html #javascript #markdown #csv #text #clipboard

  47. Need to copy an existing HTML table as text, markdown, and/or comma-separated values to the clipboard? Using just HTML and JavaScript?

    Developer advocate, and seasoned tech writer Raymond Camden (Code and Cats) has your back. The post is styled as a tutorial, with ample code samples.

    "Copying HTML Tables as Text, Markdown, and CSV"

    raymondcamden.com/2026/07/20/c

    #programming #html #javascript #markdown #csv #text #clipboard

  48. Need to copy an existing HTML table as text, markdown, and/or comma-separated values to the clipboard? Using just HTML and JavaScript?

    Developer advocate, and seasoned tech writer Raymond Camden (Code and Cats) has your back. The post is styled as a tutorial, with ample code samples.

    "Copying HTML Tables as Text, Markdown, and CSV"

    raymondcamden.com/2026/07/20/c

    #programming #html #javascript #markdown #csv #text #clipboard

  49. Need to copy an existing HTML table as text, markdown, and/or comma-separated values to the clipboard? Using just HTML and JavaScript?

    Developer advocate, and seasoned tech writer Raymond Camden (Code and Cats) has your back. The post is styled as a tutorial, with ample code samples.

    "Copying HTML Tables as Text, Markdown, and CSV"

    raymondcamden.com/2026/07/20/c

    #programming #html #javascript #markdown #csv #text #clipboard

  50. UniClipboard is an open-source clipboard sync tool for securely sharing text, images, and files across your devices.

    It uses end-to-end encryption, works on Windows, macOS, Linux, Android, and iOS, and doesn't require a cloud account.

    More details: digitalescapetools.com/tools/t

    #OpenSource #Privacy #Productivity #Clipboard #Windows #Linux #macOS #Android #iOS

  51. UniClipboard is an open-source clipboard sync tool for securely sharing text, images, and files across your devices.

    It uses end-to-end encryption, works on Windows, macOS, Linux, Android, and iOS, and doesn't require a cloud account.

    More details: digitalescapetools.com/tools/t

    #OpenSource #Privacy #Productivity #Clipboard #Windows #Linux #macOS #Android #iOS

  52. UniClipboard is an open-source clipboard sync tool for securely sharing text, images, and files across your devices.

    It uses end-to-end encryption, works on Windows, macOS, Linux, Android, and iOS, and doesn't require a cloud account.

    More details: digitalescapetools.com/tools/t

    #OpenSource #Privacy #Productivity #Clipboard #Windows #Linux #macOS #Android #iOS

  53. UniClipboard is an open-source clipboard sync tool for securely sharing text, images, and files across your devices.

    It uses end-to-end encryption, works on Windows, macOS, Linux, Android, and iOS, and doesn't require a cloud account.

    More details: digitalescapetools.com/tools/t

    #OpenSource #Privacy #Productivity #Clipboard #Windows #Linux #macOS #Android #iOS

  54. UniClipboard is an open-source clipboard sync tool for securely sharing text, images, and files across your devices.

    It uses end-to-end encryption, works on Windows, macOS, Linux, Android, and iOS, and doesn't require a cloud account.

    More details: digitalescapetools.com/tools/t

    #OpenSource #Privacy #Productivity #Clipboard #Windows #Linux #macOS #Android #iOS