#xworm — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #xworm, aggregated by home.social.
-
New XWorm 7.1 and Remcos RAT campaigns are abusing trusted #Windows utilities and memory-based execution to evade detection, giving attackers remote access to infected systems. The campaign also exploits a #WinRAR vulnerability to gain initial access.
Read: https://hackread.com/xworm-7-1-remcos-rat-windows-tools-evade-detection/
-
New Polymorphic Malware Undetected by Security Tools https://thecyberexpress.com/polymorphic-malware-undetected-by-security/ #TheCyberExpressNews #polymorphicmalware #remoteaccesstrojan #ThreatIntelligence #screenrecordings #TheCyberExpress #FirewallDaily #Pythonmalware #cryptomining #CyberThreats #CyberNews #keylogger #malware #XWorm
-
eSentire described two incidents today:
- a tax-themed threat delivering XWorm as the final payload, using phishing emails as initial infection vector. 🔗https://www.esentire.com/blog/dont-take-the-bait-the-xworm-tax-scam
- SolarMarker malware campaigns are now utilizing PyInstaller to hide malicious PowerShell scripts 🔗 https://www.esentire.com/blog/solarmarkers-shift-to-pyinstaller-tactics
Attack chains, IOC and Yara rules provided.
#threatintel #IOC #Xworm #phishing #SolarMarker #PyInstaller