home.social

#darkcaracal — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #darkcaracal, aggregated by home.social.

fetched live
  1. 📢 Dark Caracal déploie GoCaracal, un nouveau framework Go avec C2 Ethereum, contre l'Amérique latine

    En juin 2026, Arctic Wolf Labs a investigué une intrusion ciblée contre une organisation du secteur des communications au Venezuela. L'activité est attribuée avec confiance moyenne au groupe de cyberespionnage Dark Caracal, associé à la Direction…

    📖 cyberveille : cyberveille.ch/posts/2026-09-1
    🌐 source : arcticwolf.com/resources/blog/
    🟢 vérification factuelle haute
    #AmériqueLatine #DarkCaracal #Cyberveille

  2. GoCaracal: Dark Caracal nasconde il comando e controllo dentro un contratto Ethereum

    Il gruppo di cyberspionaggio libanese Dark Caracal ha dotato il suo nuovo impianto Go, GoCaracal, di un canale di fallback che legge l'indirizzo del server C2 di backup da uno smart contract Ethereum. Colpita finora l'America Latina, a partire da un operatore telecom venezuelano.

    insicurezzadigitale.com/gocara

  3. Dark Caracal's new GoCaracal malware reads a backup C2 address from an Ethereum smart contract, making single-domain takedowns far harder to enforce.

    #GoCaracal #DarkCaracal #Malware #Ethereum #Bandook

    meterpreter.org/gocaracal-malw

  4. 📢 Dark Caracal déploie GoCaracal avec fallback C2 via blockchain Ethereum

    CyberAccord (cyberaccord.com), publié le 28 août 2026, basé sur un rapport d'Arctic Wolf partagé avec Cyber Security News. L'analyse porte sur une campagne d'espionnage attribuée au groupe Dark Caracal, découverte lors d'une intrusion en juin 2026 ciblant une organisation de…

    📖 cyberveille : cyberveille.ch/posts/2026-08-2
    🌐 source : cyberaccord.com/dark-caracal-h
    🟢 vérification factuelle haute
    #DarkCaracal #GoCaracal #Cyberveille

  5. GoCaracal Malware Exploits Ethereum for Covert C2 Communications

    Researchers have uncovered a sneaky new malware, GoCaracal, that uses Ethereum to secretly communicate with its controllers, and with medium confidence, they've linked it to the notorious Dark Caracal group. This clever malware was used in a recent attack on a Venezuelan communications organization.

    osintsights.com/gocaracal-malw

    #GocaracalMalware #DarkCaracal #Ethereum #CommandAndControl #MalwareOperations

  6. Arctic Wolf has identified GoCaracal, a previously unknown malware framework tied to Dark Caracal, a Lebanon-linked threat actor associated with the General Directorate of General Security. Discovered during a targeted intrusion in Venezuela, analysis of ~250 samples revealed two variants: a lightweight loader for initial access and a full-featured

    #DarkCaracal #GoCaracal #CyberEspionage #ThreatIntelligence

    cyberworldops.eu/en/dark-carac

  7. Not all cybermercenaries are ninjas. Plenty are hella derpy (from Cooper Quintin's #DarkCaracal war story at #DEFCON31).

  8. : Instead of naming malware cool names like , we should name it stupid stuff like "whoopee cushion" or "rainbow dumbbells".

    Why should we let the hackers have cool names for their stuff? (also, it would make court cases way funnier!)

  9. #Cybersecurity #Malware #LatinAmerica #DarkCaracal: "In 2018, EFF along with researchers from Lookout Security published a report describing the Advanced Persistent Threat (APT) we dubbed "Dark Caracal." Now we have uncovered a new Dark Caracal campaign operating since March of 2022, with hundreds of infections across more than a dozen countries. In this report we will present evidence that the cyber mercenary group Dark Caracal is still active and continues to be focused on Latin America, as was reported last year. We have discovered that Dark Caracal, using the Bandook spyware, is currently infecting over 700 computers in Central and South America, primarily in The Dominican Republic and Venezuela."

    eff.org/deeplinks/2023/02/uncl

  10. Uncle Sow: Dark #Caracal in #LatinAmerica

    Given #DarkCaracal ‘s history of working with national governments — such as Kazakhstan and Lebanon — on politically motivated campaigns, it is possible that the new campaign described below is also at the behest of a government actor, but without more insight into who the infected computers belong to, we cannot draw any conclusions as to the motivation of these attacks.

    eff.org/deeplinks/2023/02/uncl

Share
Share on Mastodon

Enter the server where you have an account.