#C2
ZiChatBot: OceanLotus APT Uses Zulip Chat APIs as Covert Command and Control in PyPI Supply Chain Attack
A newly discovered malware called ZiChatBot abuses Zulip REST APIs for command and control, hiding malicious traffic as legitimate chat communications. Linked to the OceanLotus (APT32) threat group,...
Battlefield 6’s Rise Is Fueling a Surge of Malware: How Attackers are Capitalizing on the Hype
Since its release this October, “Battlefield 6” has ignited gaming communities, with millions eagerly jumping into the action-packed experience. However, alongside the excitement comes a darker side –...
Hijacking Trust: how Gmail and Google APIs are being weaponized for stealthy C2 channels
In the ever-evolving landscape of cybersecurity, attackers are increasingly exploiting trusted services to establish covert command-and-control (C2) channels. By leveraging platforms like Gmail and Google Drive, threat actors...