Newtonsoft.Json: Popular JSON Framework for .NET
Newtonsoft.Json is a widely used JSON framework for .NET that was impersonated in a typosquatting attack. The malicious fork 'Newtonsoftt.Json.Net' masqueraded as…
Newtonsoft.Json is a widely used JSON framework for .NET that was impersonated in a typosquatting attack. The malicious fork 'Newtonsoftt.Json.Net' masqueraded as…
A .NET-based infostealer delivered via fake CURP lookup, hollowed into a signed Qihoo 360 process to steal cryptocurrency wallets, browser credentials, and…
A modular .NET RAT delivered via DLL sideloading through a signed Ubisoft binary, part of the DlrtyGames campaign.
PureLogs Stealer is a .NET-based information stealer deployed in the VEIL#DROP malware chain. It harvests sensitive data from compromised hosts, including credentials…
TinyRCT is a previously undocumented .NET backdoor discovered by Palo Alto Networks Unit 42. It is a lightweight remote access trojan capable…
STOCKSTAY is a previously undocumented .NET backdoor used by the Russian threat actor Turla. It shares significant code overlaps with Kazuar and…
.NET was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CastleStealer is a .NET-based information stealer that targets credentials and sensitive data. It has been distributed alongside CastleLoader in campaigns using ClickFix…