Skip to main content
← All Articles

Tag

#Malware Analysis

21 articles

Advertisement

LOW
Threat Intel

Polymorphic Phishing Page Analysis: JavaScript Obfuscation Flaws

Analysis of a polymorphic phishing page utilizing heavy JavaScript obfuscation and variable scope bugs that cause browser loops.

Runtime Rebel Intel
3 min read · Sep 1, 2026
State of AI-Enabled Malware: Real-World Impact and Defenses
LOW
Threat Intel

State of AI-Enabled Malware: Real-World Impact and Defenses

Unit 42 reports AI-enabled malware is primarily proof-of-concept, with minimal operational activity. Existing defenses effectively detect current threats.

Runtime Rebel Intel
5 min read · Aug 25, 2026
MEDIUM
Threat Intel

AI-Powered Malware Analysis: Detecting Persistent Threats on Sensors

An analysis using Gemma4 with Ollama reveals high-volume malware downloads on DShield sensors, indicating persistent actor activity and critical compromise risks.

Runtime Rebel Intel
4 min read · Aug 13, 2026
Recorded Future's Engine: Unifying Threat Intelligence Sources
INFO
Threat Intel

Recorded Future's Engine: Unifying Threat Intelligence Sources

Explore Recorded Future's unique collection engine, integrating technical, underground, and community intelligence for proactive threat defense and deeper insights.

Runtime Rebel Intel
4 min read · Aug 8, 2026
MEDIUM
Threat Intel

Analyzing AutoIT Payload Injection Techniques in Modern Malware

Technical analysis of how threat actors use AutoIT scripts for process injection, leveraging memory management functions to execute malicious payloads in memory.

Runtime Rebel Intel
3 min read · Jul 28, 2026
HIGH
Malware

Dolphin X Malware: AI-Driven Target Prioritization & Defense

Analysis of Dolphin X, a new RAT utilizing AI to profile and rank victims, enabling threat actors to prioritize high-value targets for data exfiltration and further…

Runtime Rebel Intel
5 min read · Jul 24, 2026

Advertisement

INFO
Threat Intel

AI Models Fail at Nuclear Sabotage Malware Analysis Benchmark

New SentinelOne research reveals frontier AI models struggle with complex malware investigations, particularly those involving nuclear sabotage and industrial systems.

Runtime Rebel Intel
4 min read · Jul 23, 2026
Ousaban Banking Trojan: Phishing Lures Target Iberian Bank Users
HIGH
Malware

Ousaban Banking Trojan: Phishing Lures Target Iberian Bank Users

Ousaban, a Brazilian banking trojan, targets Windows users in Spain and Portugal via fake PDF phishing lures, aiming to steal financial credentials.

Runtime Rebel Intel
4 min read · Jul 1, 2026
INFO
Threat Intel

YARA-X 1.18.0 & 1.19.0 Release: Enhancing Malware Detection

YARA-X versions 1.18.0 and 1.19.0 bring key improvements and bug fixes, enhancing malware analysis and threat hunting capabilities for security professionals.

Runtime Rebel Intel
4 min read · Jun 28, 2026
MEDIUM
Malware

Malware Evades AI Analysis with 'Forbidden Text' Tactics

Threat actors embed 'forbidden' text in malware to confuse AI analysis tools, targeting bioinformatics and MCP developers.

Runtime Rebel Intel
5 min read · Jun 25, 2026
MEDIUM
Malware

MSI Malware Detection: Statistical Analysis for Base64 Payloads

Learn how to use statistical analysis to identify obfuscated Base64 payloads within malicious MSI files and improve your incident response capabilities.

Runtime Rebel Intel
4 min read · Jun 15, 2026
HIGH
Malware

Python-Based Infostealer Masked as PDF Targets Browser Credentials

Technical analysis of a PyInstaller-compiled infostealer using Discord webhooks to exfiltrate browser credentials, crypto wallets, and session tokens.

Runtime Rebel Intel
4 min read · Jun 9, 2026
MEDIUM
Threat Intel

WordPress Sites Targeted by Malware Using Steam Profile Dead-Drops

Over 2,000 WordPress sites compromised in a campaign hiding C2 resolution data within Steam Community profiles. Technical breakdown of the evasion tactics.

Runtime Rebel Intel
4 min read · Jun 1, 2026
HIGH
Malware

NetSupport RAT Infection: How to Detect Unidentified Loader Exploits

Analyze the multi-stage infection chain of an unidentified loader delivering NetSupport RAT, featuring technical breakdowns of JavaScript and PowerShell TTPs.

Runtime Rebel Intel
4 min read · Jun 1, 2026
INFO
Malware

Obfuscating Strings in C++ Implants: Detection and Analysis

Analyze how stack strings help malware authors evade static analysis. Explore the assembly-level mechanics and detection strategies for Windows implants.

Runtime Rebel Intel
4 min read · May 23, 2026
Shai-Hulud Worm Code Leak: How Clones Threaten Developer Environments
HIGH
Malware

Shai-Hulud Worm Code Leak: How Clones Threaten Developer Environments

The release of Shai-Hulud worm source code triggers a surge in self-replicating clones, targeting software developers and automated CI/CD pipelines.

Runtime Rebel Intel
4 min read · May 18, 2026
Masjesu Botnet DDoS-for-Hire: Analysis of IoT Malware Campaigns
HIGH
Malware

Masjesu Botnet DDoS-for-Hire: Analysis of IoT Malware Campaigns

The Masjesu botnet targets IoT devices across multiple architectures to facilitate DDoS-for-hire services via Telegram, posing risks to global infrastructure.

Runtime Rebel Intel
4 min read · Apr 8, 2026
INFO
Malware

Fileless Malware Registry Persistence Techniques Exposed

Analyzes how fileless malware leverages the Windows registry for persistence, minimizing filesystem footprint and complicating traditional detection.

Runtime Rebel Intel
4 min read · Apr 1, 2026
MEDIUM
Threat Intel

PDF Incremental Updates: Detecting Hidden Malicious URLs

Discover how attackers use PDF incremental updates to obfuscate malicious URLs and learn forensic techniques to identify and extract hidden indicators.

Runtime Rebel Intel
3 min read · Mar 30, 2026
HIGH
Supply Chain

GlassWorm Supply Chain Attack: 400+ Malicious Repos Identified

The GlassWorm campaign hits GitHub, npm, and VSCode marketplaces with over 400 malicious repositories. Learn to detect and mitigate this supply chain threat.

Runtime Rebel Intel
4 min read · Mar 18, 2026
MEDIUM
Malware

Analyzing Embedded ZIP Payloads in RTF Documents for Malware Analysis

Learn how to detect ZIP files in RTF documents and extract hex-encoded binary payloads using specialized forensic tools to identify hidden malware threats.

Runtime Rebel Intel
4 min read · Mar 2, 2026