Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Malware
Latest news

Console Pipe Injection Shows Why EDR Cannot Rely on Classic Memory-Write Signals

28 September 2026  |  dark6  |  Malware

A newly disclosed Windows injection method delivers payload bytes through a child console process’s redirected input, avoiding two APIs commonly associated with remote code injection. The technique still...

>> read more

Samsung MagicINFO Exploit Leads to Persistent Access and On-Host Cryptominer Build

26 September 2026  |  dark6  |  Malware

Attackers exploited a known Samsung MagicINFO file-write flaw, installed AnyDesk, created an administrator account and disabled Microsoft Defender before building a Monero miner on the victim. The case...

>> read more

CARBONATO Botnet Embeds an AI Agent in Compromised Docker Hosts

26 September 2026  |  dark6  |  Malware

The CARBONATO botnet abuses unauthenticated Docker services, escapes privileged containers and installs an AI agent controlled through Telegram. Separate automated scripts spread across nearby networks while the agent...

>> read more

TWEAKOS Doesn’t Just Steal Your Discord and Telegram Accounts — It Puts Them Up for Sale

26 September 2026  |  dark6  |  Malware

A newly uncovered malware operation called TWEAKOS pairs a lightweight Windows stealer with a Telegram-based storefront, letting operators harvest Discord tokens and hijack Telegram sessions, then sell the...

>> read more

RemControl: The Android Banking Trojan Hiding Behind Fake Streaming Apps and AI-Written Code

25 September 2026  |  dark6  |  Malware

A new Android banking trojan called RemControl is spreading through fake streaming-app download pages, using convincing overlay screens to steal PINs and card details from more than 30...

>> read more

RemControl Android Trojan Uses Fake Banking Screens to Steal PINs

25 September 2026  |  dark6  |  Malware

RemControl spreads through fake streaming-app pages and overlays convincing phishing screens on top of banking apps. The Android trojan targets more than 30 financial institutions and combines credential...

>> read more

New PamStealer Variant Poses as a Crypto Wallet App to Raid Mac Keychains

24 September 2026  |  dark6  |  Malware

Jamf Threat Labs has identified a third-generation PamStealer campaign distributed through a fake multichain crypto-wallet installer called Wavel. The malware has been rewritten in Swift and now relies...

>> read more

105 Minutes of Stolen Access Turned a Trusted npm Package Into a Multi-Stage Malware Loader

23 September 2026  |  dark6  |  Malware

Attackers hijacked a maintainer account for just 105 minutes to slip a hidden loader into a popular npm package, abusing legitimate publishing infrastructure so the poisoned release carried...

>> read more