Malware News
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ... Partner channel: @cveNotify For ads: https://telega.io/c/malwr
Mostrar más📈 Análisis del canal de Telegram Malware News
El canal Malware News (@malwr) en el segmento lingüístico de Inglés es un actor destacado. Actualmente la comunidad reúne a 16 184 suscriptores, ocupando la posición 7 752 en la categoría Tecnologías y Aplicaciones y el puesto 2 304 en la región EEUU.
📊 Métricas de audiencia y dinámica
Desde su creación el невідомо, el proyecto ha mostrado un crecimiento acelerado, reuniendo a 16 184 suscriptores.
Según los últimos datos del 15 septiembre, 2026, el canal mantiene una actividad estable. En los últimos 30 días la variación de miembros fue de 122, y en las últimas 24 horas de -9, conservando un alto alcance.
- Estado de verificación: No verificado
- Tasa de interacción (ER): El promedio de interacción de la audiencia es 3.82%. Durante las primeras 24 horas tras publicar, el contenido suele obtener 1.93% de reacciones respecto al total de suscriptores.
- Alcance de las publicaciones: Cada publicación recibe en promedio 618 visualizaciones. En el primer día suele acumular 312 visualizaciones.
- Reacciones e interacción: La audiencia responde de forma activa: el promedio de reacciones por publicación es 1.
- Intereses temáticos: El contenido se centra en temas clave como threat, kernel, cve-2025, actor, attack.
📝 Descripción y política de contenido
El autor describe el recurso como un espacio para expresar opiniones subjetivas:
“The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...
Partner channel: @cveNotify
For ads: https://telega.io/c/malwr”
Gracias a la alta frecuencia de actualizaciones (últimos datos recibidos el 16 septiembre, 2026), el canal mantiene la vigencia y un amplio alcance. La analítica demuestra que la audiencia interactúa activamente con el contenido, lo que lo convierte en un punto de referencia dentro de la categoría Tecnologías y Aplicaciones.
Carga de datos en curso...
| Fecha | Crecimiento de Suscriptores | Menciones | Canales | |
| 16 septiembre | +16 | |||
| 15 septiembre | 0 | |||
| 14 septiembre | 0 | |||
| 13 septiembre | +2 | |||
| 12 septiembre | +7 | |||
| 11 septiembre | 0 | |||
| 10 septiembre | 0 | |||
| 09 septiembre | 0 | |||
| 08 septiembre | 0 | |||
| 07 septiembre | 0 | |||
| 06 septiembre | +2 | |||
| 05 septiembre | 0 | |||
| 04 septiembre | +3 | |||
| 03 septiembre | +1 | |||
| 02 septiembre | 0 | |||
| 01 septiembre | 0 |
| 2 | Tajin Group: Guarantee Marketplace Vendor Involved in Phishing and Chinese Money Laundering Group
Analyze Tajin Group's role in phishing and Chinese money laundering. Discover how this Telegram-based vendor exploits payment gateways and adapts its financial fraud operations.
https://www.recordedfuture.com/research/tajin-group-gurantee-marketplace
https://assets.recordedfuture.com/insikt-report-pdfs/2026/cta-2026-0915.pdf
🎖@malwr | 383 |
| 3 | bombinisecurity/bombini: eBPF Security Monitoring and Sandboxing Agent Based on Aya
https://github.com/bombinisecurity/bombini
🎖@malwr | 417 |
| 4 | Idov31/Silverseal: Silverseal is a Linux framework containing a bootkit, rootkit loader and a rootkit
https://github.com/Idov31/Silverseal
🎖@malwr | 372 |
| 5 | LumosLab-Innovation/OpenHunterAI: Local-first AI red team for web, API, and LLM application security. Attacker-style reasoning, evidence-backed findings, and skills for AI coding agents.
https://github.com/LumosLab-Innovation/OpenHunterAI
🎖@malwr | 427 |
| 6 | The Harness Matters: Cutting AI Reverse-Engineering Tokens by 33%
A controlled AgentRE-Bench comparison shows how Reverser Space used 33% fewer tokens and 35% fewer analysis calls without a meaningful score loss.
https://reverser.space/blog/the-harness-matters-ai-reverse-engineering/
🎖@malwr | 458 |
| 7 | Black God Linux — Offensive Security, Re-Engineered
Purpose-built for speed and automation. 300+ tools, 5.4x faster recon velocity, and native Apple Silicon hardware acceleration.
https://sabarishyuvasri8-del.github.io/black-god-linux/
🎖@malwr | 377 |
| 8 | Ilias1988/LOLBins-Reference: A unified, interactive reference for Living Off The Land Binaries (LOLBAS & GTFOBins). Features a dynamic payload builder (LHOST/LPORT), real-time search, MITRE ATT&CK mapping, and auto-updates from official sources.
https://livingofftheland.dev/
https://github.com/Ilias1988/LOLBins-Reference
🎖@malwr | 504 |
| 9 | Decompilation Book
Build a decompiler to understand one. A chapter-by-chapter walk from RV32I machine code back to readable C, with the working Python implementation open beside you.
https://decompilation.education/
🎖@malwr | 561 |
| 10 | Once in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero-Days | Proofpoint US
Analyst note: Proofpoint uses the UNK_ designator to define clusters of activity that are still developing and have not been observed for long enough to receive a numerical TA designation.
https://www.proofpoint.com/us/blog/threat-insight/once-bluemoon-multiple-state-aligned-threat-actors-rapidly-adopt-novel-exploit
🎖@malwr | 464 |
| 11 | Casbaneiro: A Banking Trojan with Distributed Data-Receiving Servers | FortiGuard Labs
FortiGuard Labs examines how a new Casbaneiro campaign targeting Latin America uses geofencing and distributed servers to evade analysis and detection…
https://www.fortinet.com/blog/threat-research/casbaneiro-a-banking-trojan-with-distributed-data-receiving-servers
🎖@malwr | 377 |
| 12 | AsyncRAT Delivered via AutoIT: Full Chain Analysis | Point Wild
Point Wild
https://www.pointwild.com/threat-intelligence/asyncrat-delivered-via-autoit-full-chain-analysis/
🎖@malwr | 341 |
| 13 | Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure
An investigation into how cybercriminals used YouTube gaming lures and SEO poisoning to deliver multi-payload malware to enterprise networks.
https://unit42.paloaltonetworks.com/ppi-network-malware-campaign-analysis/
🎖@malwr | 354 |
| 14 | matheus-git/binkit: A modular toolbox for analyzing, disassembling, and patching binary formats.
https://github.com/matheus-git/binkit/
🎖@malwr | 401 |
| 15 | SnailSploit/Claude-Red: claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.
https://github.com/SnailSploit/Claude-Red
🎖@malwr | 465 |
| 16 | 2026-09-11: Traffic analysis exercise - Kongtuke Rebuke!
https://www.malware-traffic-analysis.net/2026/09/11/index.html
🎖@malwr | 480 |
| 17 | https://www-cdn.anthropic.com/e50be2e51e7695dc4b1366a37a245a597377d3b5/Anthropic-Detecting-and-countering-091026.pdf
Detecting and countering misuse of AI
September 2026
🎖@malwr | 489 |
| 18 | PirusPoker/ghidra-ai-copilot: AI reverse-engineering assistant for Ghidra - analyze functions with Claude, right inside the tool.
https://github.com/PirusPoker/ghidra-ai-copilot
🎖@malwr | 549 |
| 19 | Windows Kernel Pool Internals
Good morning! In today’s blog post we’re going to dive into a topic that has interested me for quite some time, the Windows kernel pool. It’s a topic that tends to have “scarce” documentation online and can be somewhat intricate. That’s precisely why it has captured my attention from the beginning.
https://r0keb.github.io/posts/Windows-Kernel-Pool-Internals/
🎖@malwr | 495 |
| 20 | Userland Guard Page Neutralization
Welcome to this new Medium post. In this one, we are going to look at two very simple ways to bypass or evade Guard Pages placed within our…
https://medium.com/@s12deff/userland-guard-page-neutralization-f121c012de49
🎖@malwr | 416 |
