Oblivion: Rent-a-Malware Tool for Android Banking Fraud
Oblivion is a $300-a-month rent-a-malware tool documented earlier in 2026, which RedWing is a variant of. It provides a ready-made platform for…
Oblivion is a $300-a-month rent-a-malware tool documented earlier in 2026, which RedWing is a variant of. It provides a ready-made platform for…
Fantasy Hub is a near-identical Russian-market rental kit for Android banking fraud, flagged by researchers last year. It uses similar techniques to…
Albiriox is an Android malware that targets more than 400 finance apps using on-device fraud techniques similar to RedWing.
Klopatra is an Android malware that uses hidden remote control and fake overlays to drain accounts while victims sleep, similar to RedWing.
Shai-Hulud is a known npm worm family that has been active in past supply chain attacks. The recent ChainDrop campaign shows tradecraft…
Cavern (aka Cav3rn) is a modular command-and-control framework used by Iranian nation-state hackers, linked to Cavern Manticore. It supports various post-exploitation modules…
DCRat is a malware family that has been observed in communications with Sable Squirrel's infrastructure, contributing to the threat actor's malicious activities.
SkillCloak is a technique developed by researchers at the Hong Kong University of Science and Technology that rewrites malicious AI agent skills…
SkillDetonate is a runtime checker developed by the same team behind SkillCloak. It runs skills in a sandbox and monitors OS-level behavior,…
ClawHavoc is a campaign identified by Koi Security that distributed 341 malicious skills on the ClawHub marketplace, later growing to 824. These…