XG-Web: Browser-Centric Remote-Access and Information-Stealing Framework
XG-Web is a browser-centric remote-access and information-stealing framework used by Jewelbug. It turns a victim's browser into a full remote-control channel, allowing…
XG-Web is a browser-centric remote-access and information-stealing framework used by Jewelbug. It turns a victim's browser into a full remote-control channel, allowing…
Chrome Remote Desktop is a remote access tool that allows users to control computers remotely. A suspected North Korean operative installed it…
Cybersecurity researchers have uncovered an active, multi-wave campaign that uses social engineering lures themed around Adobe and Zoom updates, business document reviews,…
ScreenConnect, a remote monitoring and management (RMM) tool by ConnectWise, is being abused by threat actors in the SMOKE#SCREEN campaign to gain…
The built-in Take Control feature in N-able N-central was abused by attackers to pivot into managed endpoints after exploiting CVE-2026-18577.
Pandora RC is a remote access tool used by the attackers to establish remote access to victim machines. It is a legitimate…
WAVESHAPER.V2 is a backdoor malware used by UNC1069/Sapphire Sleet, identified in the axios npm compromise. It provides remote access and data exfiltration…
Remote access trojans are part of the malware payloads in Operation Muck and Load, a campaign that abuses GitHub repositories to deliver…
LogMeIn is a remote access and support software. Qilin ransomware affiliates used LogMeIn for reconnaissance and remote access during post-exploitation activities after…
RedHook is an Android trojan that has resurfaced with new capabilities including autonomous privilege abuse via Android's Wireless ADB Debugging. It provides…