New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS
Cybersecurity researchers at LevelBlue have identified a new Java-based remote access trojan (RAT) named QuimaRAT, which is capable of targeting Windows, Linux,…
Cybersecurity researchers at LevelBlue have identified a new Java-based remote access trojan (RAT) named QuimaRAT, which is capable of targeting Windows, Linux,…
QuimaRAT is a Java-based remote access trojan (RAT) advertised under a malware-as-a-service (MaaS) model, capable of targeting Windows, Linux, and macOS. It…
Quima Control, also known as QuimaRAT, is a remote administration tool with 74 Windows and 46 macOS and Linux modules. It is…
A previously undocumented threat actor, Armored Likho, has been attributed to cyber attacks targeting government agencies and the electric power sector across…
CVE-2025-9491 is a now-patched Windows shortcut vulnerability (ZDI-CAN-25373) that allows remote code execution. Addressed by Microsoft in November 2025 Patch Tuesday, it…
BusySnake Stealer is a Python-based information stealer targeting Windows systems, used by Armored Likho. It implements evasion techniques like dynamic bytecode decryption…
A Brazilian banking trojan called Ousaban is targeting Windows users in Spain and Portugal, using phishing PDFs disguised as corrupted files. Discovered…
Ousaban, also known as Javali, is a Brazilian banking trojan targeting Windows users in Spain and Portugal. It uses phishing PDFs with…
Cybersecurity researchers have flagged a new malware artifact generated using DeepSeek that constructed a novel attack path combining 'unrealistic browser-malware concepts with…
AMSI is a Windows feature that allows antivirus to scan scripts before execution. The new ClickFix delivery method is designed to bypass…