NonEuclid RAT exploits UAC bypass and AMSI evasion for stealthy cyberattacks
NonEuclid leverages features like antivirus bypass, privilege escalation, anti-detection mechanisms, and ransomware encryption.
NonEuclid leverages features like antivirus bypass, privilege escalation, anti-detection mechanisms, and ransomware encryption.
The announcement follows claims by a threat actor who leaked the stolen data on the BreachForums hacking forum.
DDoS attacks conducted by the botnet peaked in October and November 2024, with short bursts of intense traffic reaching up to 100 Gbps.
CVE-2024-41713 and CVE-2024-55550 can be chained together, enabling a hacker to read arbitrary files on the server.
Over the past year, Socket researchers have observed the consistent misuse of OAST services such as oastify[.]com and oast[.]fun.
A key objective of these campaigns is to steal Discord credentials.
The FireScam malware exfiltrates sensitive data from infected Android devices.
The attackers allegedly deducted small amounts of money from employees' salaries.
For initial access the attackers exploit known vulnerabilities such as CVE-2015-2051.
The ongoing campaign involves malicious npm packages that mimic legitimate plugins.
Showing elements 861 - 870