uz
Feedback
Malware News

Malware News

Kanalga Telegram’da o‘tish

The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ... Partner channel: @cveNotify For ads: https://telega.io/c/malwr

Ko'proq ko'rsatish

📈 Telegram kanali Malware News analitikasi

Malware News (@malwr) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 14 352 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 9 017-o'rinni va AQSH mintaqasida 2 679-o'rinni egallagan.

📊 Auditoriya ko‘rsatkichlari va dinamika

невідомо sanasidan buyon loyiha tez o‘sib, 14 352 obunachiga ega bo‘ldi.

05 Iyun, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 629 ga, so‘nggi 24 soatda esa 39 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.

  • Tasdiqlash holati: Tasdiqlanmagan
  • Jalb etish (ER): Auditoriya o‘rtacha 0% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 3.80% ini tashkil etuvchi reaksiyalarni to‘playdi.
  • Post qamrovi: Har bir post o‘rtacha 0 marta ko‘riladi; birinchi sutkada odatda 544 ta ko‘rish yig‘iladi.
  • Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 0 ta reaksiya keladi.
  • Tematik yo‘nalishlar: Kontent threat, kernel, cve-2025, actor, attack kabi asosiy mavzularga jamlangan.

📝 Tavsif va kontent siyosati

Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ... Partner channel: @cveNotify For ads: https://telega.io/c/malwr

Yuqori yangilanish chastotasi (oxirgi ma’lumot 06 Iyun, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.

14 352
Obunachilar
+3924 soatlar
+1377 kunlar
+62930 kunlar
Postlar arxiv
PCPJack Hijacked 230 AWS, GCP, and Azure Servers to Run a Hidden SMTP Relay Network Hunt.io recovered a 12-file SMTP proxy deployment toolkit from exposed PCPJack infrastructure, revealing how 230 compromised Linux servers were converted into a persistent email relay network using Sliver and Chisel. https://hunt.io/blog/pcpjack-230-cloud-servers-smtp-proxy-network-sliver-chisel 🎖@malwr

ReliaQuest's Agentic AI Uncovers New China-Linked Cluster OP-512 | Threat Spotlight et the full breakdown of OP-512: attribution, attack chain, web shell internals, and the behavioral detections that actually catch this China-linked cluster. https://reliaquest.com/blog/threat-spotlight-reliaquests-agentic-ai-uncovers-new-china-linked-cluster-op-512 🎖@malwr

The Detection & Response Chronicles: Covert Operations Through QEMU – NVISO Labs Adversaries have always relied on legitimate tools to carry out their attacks. These tools are already trusted by security solutions, which allows them to blend in with normal activity, maintain a low footprint, and make detection much harder for defenders. By using these legitimate tools, adversaries can carry out a wide range of actions, such… https://blog.nviso.eu/2026/06/04/the-detection-response-chronicles-covert-operations-through-qemu/ 🎖@malwr

The Interesting Case of WSL for Payload Staging | by Koifsec | Jun, 2026 | Detect FYI The Interesting Case of WSL for Payload Staging What Is WSL2? Windows Subsystem for Linux (WSL) lets you run a Linux environment directly on Windows without a traditional virtual machine or dual-boot … https://detect.fyi/the-interesting-case-of-wsl-for-payload-staging-bfaa0f69329a 🎖@malwr

The Click that shouldn’t have worked: RCE via clickjacking in Internet Explorer – PT SWARM https://swarm.ptsecurity.com/the-click-that-shouldnt-have-worked-rce-via-clickjacking-in-internet-explorer/ 🎖@malwr

RimFaxxe/Horse-Star-Reconstructed: Horse Star Reconstructed is a reverse engineering and preservation project focused on reconstructing the data and systems of the 2010 Mindscape MMO "Horse Star". · GitHub https://github.com/RimFaxxe/Horse-Star-Reconstructed 🎖@malwr

Release Ghidra 12.1.2 · NationalSecurityAgency/ghidra · GitHub https://github.com/NationalSecurityAgency/ghidra/releases/tag/Ghidra_12.1.2_build 🎖@malwr

Reverse Engineering Crazy Taxi, Part 3 https://wretched.computer/post/crazytaxi3 🎖@malwr

sonx4444/hook-nt: A Windows NT API hooking tool for intercepting and monitoring system calls · GitHub https://github.com/sonx4444/hook-nt 🎖@malwr

AI-Powered Cheats & Stolen Secrets: Teardown of the Yuta/Solara Roblox Stealer | Derp Deep-dive analysis of a trojanized Roblox executor that functions as a highly convincing lure with live DeepSeek script generation, while silently staging a Python 3.12 variant of Glove Stealer that bypasses Google Chrome's App-Bound Encryption. https://www.derp.ca/research/yuta-solara-roblox-python-rat/ 🎖@malwr

zvxhash/void-sniff: A lightweight, self-contained x64 Native API syscall monitor for Windows with a custom inline hook engine and zero external dependencies. · GitHub https://github.com/zvxhash/void-sniff 🎖@malwr

Division-36/Z-Jail: A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine (Truthimatics Public Version) for secure, auditable code execution. · GitHub https://github.com/Division-36/Z-Jail 🎖@malwr

MXC Internals: How Microsoft's eXecution Containers Actually Isolate Agent Code | Origin By Tyler Holmwood on 2026-06-04 https://www.originhq.com/research/mxc-execution-containers-internals 🎖@malwr

Threats to the 2026 FIFA World Cup Threat assessment for the 2026 FIFA World Cup (US, Mexico, Canada) covering organized crime, AI-powered cyber fraud, state espionage, and political influence operations. https://www.recordedfuture.com/research/threats-fifa-world-cup https://assets.recordedfuture.com/insikt-report-pdfs/2026/CTA-2026-0604.pdf 🎖@malwr

Bring Your Own RWX Region DLL (BYORWXDLL) | by S12 - 0x12Dark Development | Jun, 2026 | Medium Bring Your Own RWX Region DLL (BYORWXDLL) Welcome to this new Medium post, today we are exploring a technique I call Bring Your Own RWX Region DLL (BYORWXDLL), inspired by the well-known BYOVD (Bring … https://medium.com/@s12deff/bring-your-own-rwx-region-dll-byorwxdll-0283951d34e9 🎖@malwr

Inside DesckVB Rat Analysis: From Malspam to In-Memory RAT | Huntress A malspam campaign abusing Google's DoubleClick delivers DesckVB RAT through a five-stage chain that evades detection and blinds Windows telemetry before persisting https://www.huntress.com/blog/malspam-to-deskcvb-rat-delivery-chain-analysis 🎖@malwr