Skip to main content
← All Articles

Tag

#Persistence

7 articles

Advertisement

OpenClaw 'Claw Chain' Vulnerabilities: Credential Theft, Persistence
HIGH
Vulnerabilities

OpenClaw 'Claw Chain' Vulnerabilities: Credential Theft, Persistence

Analysis of 'Claw Chain' vulnerabilities in OpenClaw, an AI agent framework, detailing credential theft, privilege escalation, and persistence risks. Patching guidance

Runtime Rebel Intel
4 min read·May 19, 2026
TH
HIGH
Threat Intel

UNC6692 Targets Microsoft Teams to Deploy Snow Malware

UNC6692 is leveraging Microsoft Teams and social engineering to deliver the modular Snow malware suite, facilitating long-term persistence and data theft.

Runtime Rebel Intel
3 min read·Apr 25, 2026
MA
CRITICAL
Malware

Firestarter Backdoor Infects Cisco Firewall at US Federal Agency

Analysis of the Firestarter backdoor on Cisco firewalls, detailing its remote access capabilities, post-patch persistence, and mitigation strategies.

Runtime Rebel Intel
4 min read·Apr 24, 2026
Dragon Boss Adware Evolves: Scheduled Tasks & Windows Defender Evasion
HIGH
Malware

Dragon Boss Adware Evolves: Scheduled Tasks & Windows Defender Evasion

Dragon Boss adware transforms into a persistent AV killer, using scheduled tasks to establish presence and disable Windows Defender protections on infected systems.

Runtime Rebel Intel
4 min read·Apr 17, 2026
WhatsApp VBS Malware Bypasses UAC to Hijack Windows Systems
HIGH
Malware

WhatsApp VBS Malware Bypasses UAC to Hijack Windows Systems

Microsoft warns of a new campaign distributing VBS malware via WhatsApp, exploiting UAC bypass to establish persistence and remote access on Windows systems, starting

Runtime Rebel Intel
4 min read·Apr 1, 2026
Hive0163 Deploys AI-Assisted Slopoly Malware for Persistent Access
HIGH
Malware

Hive0163 Deploys AI-Assisted Slopoly Malware for Persistent Access

The Hive0163 threat actor is leveraging Slopoly, an AI-generated malware framework, to maintain persistence in ransomware campaigns and financial theft operations.

Runtime Rebel Intel
4 min read·Mar 12, 2026
BYOVD-Driven XMRig Campaign Employs Time-Based Logic Bombs and Lateral Movement
HIGH
Malware

BYOVD-Driven XMRig Campaign Employs Time-Based Logic Bombs and Lateral Movement

An analysis of a sophisticated cryptojacking operation utilizing Bring Your Own Vulnerable Driver (BYOVD) techniques and wormable components to maximize Monero mining yield.

Runtime Rebel Intel
2 min read·Feb 23, 2026