#hides


New Ted Backdoor Hides Inside Victims’ Own HAProxy Builds to Intercept Web Traffic

Sep 4, 2026 // 19:17

A previously undocumented Linux toolkit has been found compiled directly into the trojanized HAProxy load balancers of two South Korean organizations, where it intercepted web […]

ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions

Aug 31, 2026 // 20:53

The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under […]

New DOUBLECUP ClickFix service hides malware in browser cache images

Aug 5, 2026 // 00:39

A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims’ browsers, ultimately delivering CountLoader to Windows […]

New DOUBLECUP ClickFix service hides malware in browser cache images

Aug 4, 2026 // 00:56

A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims’ browsers, ultimately delivering CountLoader to Windows […]

New DOUBLECUP ClickFix service hides malware in browser cache images

Aug 4, 2026 // 00:36

A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims’ browsers, ultimately delivering CountLoader to Windows […]

New DOUBLECUP ClickFix service hides malware in browser cache images

Aug 4, 2026 // 00:36

A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims’ browsers, ultimately delivering CountLoader to Windows […]

Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working Library

Jul 22, 2026 // 09:01

Cybersecurity researchers have discovered a NuGet typosquat that’s unlike the typical information-stealing malware distributed via package registries: usual info-stealers: it’s designed to rig live game […]

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

Jul 20, 2026 // 17:38

A newly discovered espionage implant has been using a hijacked Microsoft 365 calendar as its command channel, planting operator instructions and smuggling out stolen files […]

‘Ghostcommit’ hides prompt injection in images to fool AI agents, steal secrets

Jul 12, 2026 // 16:17

Researchers have built a pull request that steals a repository’s secrets by hiding the malicious instruction inside a PNG that AI code reviewers never open. […]

WordPress malware campaign hides payloads in Steam profiles

Jun 1, 2026 // 20:17

Nearly 2,000 WordPress websites were infected with malware that relies on Steam Community profile comments to hide command-and-control (C2) data. The threat actor used invisible […]

1 2 Next