#infosec
cert-agid.gov.it/news/mintslo...
#infosec
cert-agid.gov.it/news/mintslo...
#infosec
https://cert-agid.gov.it/news/mintsloader-via-pec-falsi-solleciti-di-pagamento-per-diffondere-malware/
#infosec
https://cert-agid.gov.it/news/mintsloader-via-pec-falsi-solleciti-di-pagamento-per-diffondere-malware/
MintsLoader is a JavaScript/PowerShell loader that was first detailed by OCD in 2024.
A new version has been around at least since early-June 2025.
#threatintel #cti #mintsloader
MintsLoader is a JavaScript/PowerShell loader that was first detailed by OCD in 2024.
A new version has been around at least since early-June 2025.
#threatintel #cti #mintsloader
-Fog affiliate has a leak
-New MintsLoader malware
-ChoiceJacking attack bypasses juice jacking defenses
-Telegram vuln drama
-Brocade switches, Commvault servers exploited in the wild
-75 0days exploited last year
-Fog affiliate has a leak
-New MintsLoader malware
-ChoiceJacking attack bypasses juice jacking defenses
-Telegram vuln drama
-Brocade switches, Commvault servers exploited in the wild
-75 0days exploited last year
2026-02-02 (Monday) #KongTuke #ClickFix activity leads to #MintsLoader and #GhostWeaver RAT
Today's ClickFix uses the "finger" command, a tactic seen in previous ClickFix activity.
Further details available at www.malware-traffic-analysis.net/2026/02/02/i...
2026-02-02 (Monday) #KongTuke #ClickFix activity leads to #MintsLoader and #GhostWeaver RAT
Today's ClickFix uses the "finger" command, a tactic seen in previous ClickFix activity.
Further details available at www.malware-traffic-analysis.net/2026/02/02/i...
This research examines MintsLoader, linked to groups like TAG-124 (LandUpdate808), to deploy capabilities like GhostWeaver and StealC.
Link: www.recordedfuture.com/research/unc...
This research examines MintsLoader, linked to groups like TAG-124 (LandUpdate808), to deploy capabilities like GhostWeaver and StealC.
Link: www.recordedfuture.com/research/unc...
The associated infrastructure could be tracked thanks to specific patterns and campaign IDs in the C2 URLs: archive.org/details/cu31...
The associated infrastructure could be tracked thanks to specific patterns and campaign IDs in the C2 URLs: archive.org/details/cu31...
#PhishingNews #Phishing
#PhishingNews #Phishing
https://blog.kowatek.com/2025/01/27/mintsloader-delivers-stealc-malware-and-boinc-in-targeted-cyber-attacks/
#Security
Event Attributes
https://blog.kowatek.com/2025/01/27/mintsloader-delivers-stealc-malware-and-boinc-in-targeted-cyber-attacks/
#Security
Event Attributes
https://blog.kowatek.com/2025/01/27/mintsloader-delivers-stealc-malware-and-boinc-in-targeted-cyber-attacks/
#Security
Event Attributes
https://blog.kowatek.com/2025/01/27/mintsloader-delivers-stealc-malware-and-boinc-in-targeted-cyber-attacks/
#Security
Event Attributes