Skip to main content
← All Articles

Tag

#PowerShell

7 articles

Advertisement

MA
HIGH
Malware

NetSupport RAT Infection: How to Detect Unidentified Loader Exploits

Analyze the multi-stage infection chain of an unidentified loader delivering NetSupport RAT, featuring technical breakdowns of JavaScript and PowerShell TTPs.

Runtime Rebel Intel
4 min read·Jun 1, 2026
PowMix Botnet Targets Czech Workers via Randomized C2 Traffic
HIGH
Threat Intel

PowMix Botnet Targets Czech Workers via Randomized C2 Traffic

Researchers uncover the PowMix botnet targeting the Czech workforce with evasive randomized C2 beaconing to bypass network signature detections.

Runtime Rebel Intel
3 min read·Apr 16, 2026
DPRK Hackers Abuse GitHub Infrastructure for C2 in South Korea
HIGH
Threat Intel

DPRK Hackers Abuse GitHub Infrastructure for C2 in South Korea

North Korean state-sponsored actors are leveraging GitHub as a command-and-control platform in complex multi-stage attacks targeting South Korean organizations.

Runtime Rebel Intel
3 min read·Apr 6, 2026
MA
HIGH
Malware

SmartApeSG Campaign: Multi-RAT Distribution via Malicious Archives

Analysis of the SmartApeSG campaign leveraging phishing, LNK files, and scripts to distribute Remcos RAT, NetSupport RAT, StealC, and Sectop RAT. Learn mitigation.

Runtime Rebel Intel
4 min read·Mar 25, 2026
MA
HIGH
Malware

InstallFix Campaign: Cloned AI Tool Sites Distribute Info-Stealers

The InstallFix campaign uses cloned AI tool websites and malicious PowerShell commands to distribute info-stealers like Lumma and Vidar. Stay protected.

Runtime Rebel Intel
4 min read·Mar 9, 2026
MA
HIGH
Malware

XWorm RAT Delivery: Analyzing Multi-Stage Infection Chains

New XWorm malware waves utilize multi-technology delivery involving LNK files and PowerShell. Learn how to detect and mitigate XWorm RAT infections.

Runtime Rebel Intel
3 min read·Mar 4, 2026
Trojanized Gaming Tools Deliver Java-Based RAT via PowerShell
HIGH
Malware

Trojanized Gaming Tools Deliver Java-Based RAT via PowerShell

Security researchers identify a malware campaign using trojanized gaming tools to deliver a Java-based RAT using PowerShell and portable Java runtimes.

Runtime Rebel Intel
4 min read·Feb 27, 2026