Skip to main content
← All Articles

Tag

#obfuscation

7 articles

Advertisement

MA
INFO
Malware

Obfuscating Strings in C++ Implants: Detection and Analysis

Analyze how stack strings help malware authors evade static analysis. Explore the assembly-level mechanics and detection strategies for Windows implants.

Runtime Rebel Intel
4 min read·May 23, 2026
MA
HIGH
Malware

Analysis of Cross-Platform NPM Stealer Using Discord Webhooks

Technical teardown of an obfuscated Node.js infostealer targeting Discord tokens, crypto wallets, and browser credentials via cross-platform scripts.

Runtime Rebel Intel
3 min read·May 22, 2026
MA
MEDIUM
Malware

Malicious PDF Structure Analysis and Obfuscation Detection

Learn how to detect malicious PDF obfuscation and analyze internal structures like /OpenAction and /JS streams to identify hidden malware payloads.

Runtime Rebel Intel
3 min read·May 21, 2026
Emoji-Based C2: Threat Actors Adopt Covert Communication Tactics
MEDIUM
Threat Intel

Emoji-Based C2: Threat Actors Adopt Covert Communication Tactics

Threat actors are increasingly using emojis for covert Command and Control communications to evade security filters. Learn how to detect these obfuscated TTPs.

Runtime Rebel Intel
4 min read·Apr 9, 2026
DeepLoad Malware Leverages AI for Evasion and Credential Theft
HIGH
Malware

DeepLoad Malware Leverages AI for Evasion and Credential Theft

DeepLoad, an AI-powered malware, uses massive junk code to evade detection while stealing credentials. Learn its TTPs and mitigation strategies.

Runtime Rebel Intel
4 min read·Mar 31, 2026
TH
MEDIUM
Threat Intel

SVG-Based Phishing: Using Scalable Vector Graphics for Credential Theft

Discover how threat actors leverage SVG files to bypass email filters and execute credential theft through embedded JavaScript and HTML forms.

Runtime Rebel Intel
4 min read·Mar 25, 2026
TH
LOW
Threat Intel

Exploiting IPv4-Mapped IPv6 Addresses to Obfuscate Web Scanning

Attackers leverage RFC 4038 IPv4-mapped IPv6 addresses to bypass security filters and obfuscate scanning activities targeting proxy-related URLs.

Runtime Rebel Intel
3 min read·Mar 17, 2026