Find a story
Search Spins
Search titles, summaries, and missing voices across published articles — press releases, announcements, and media coverage.
5 results for “command-and-control”
Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain
Cybersecurity researchers identified a novel malware technique called NullReceiver that hides command-and-control server IP addresses in empty Ethereum transaction destination addresses within compromised npm packages.
Aug 5, 2026
Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
The Chaos ransomware group deployed msaRAT, a Rust-based remote access trojan, to route command-and-control traffic through the victim's locally running headless Chrome or Edge browser — bypassing network detection by avoiding direct outbound connections.
Jul 23, 2026
New HollowGraph malware uses Microsoft Graph for stealthy C2 comms
HollowGraph is a novel malware that abuses Microsoft Graph API's calendar functionality in compromised Microsoft 365 accounts to conduct stealthy command-and-control (C2) operations and data exfiltration.
Jul 20, 2026
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands
A new modular malware named TELEPUZ has been observed spreading since late April 2026 via compromised websites using ClickFix lures, enabling data theft and remote command execution.
Jul 16, 2026
Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
An Iranian state-linked hacking group has deployed a newly discovered modular command-and-control framework called Cavern to conduct cyber operations against Israeli IT providers and government entities.
Published Jul 6, 2026 · Analyzed Jul 8, 2026