<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Rust</title><description>Cybersecurity articles tagged #Rust on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>North Korea&apos;s Sapphire Sleet Targets Rust Supply Chain via arrayref Crate</title><link>https://runtimerebel.com/blog/north-korea-s-sapphire-sleet-targets-rust-supply-chain-via-arrayref-crate</link><guid isPermaLink="true">https://runtimerebel.com/blog/north-korea-s-sapphire-sleet-targets-rust-supply-chain-via-arrayref-crate</guid><description>North Korean actor Sapphire Sleet compromised a Rust maintainer&apos;s account to publish malicious `arrayref` crate versions, targeting the Rust supply chain.</description><pubDate>Sun, 23 Aug 2026 16:16:30 GMT</pubDate><category>North Korea</category><category>Rust</category><category>Supply Chain Attack</category><category>Crates Io</category><category>Sapphire Sleet</category></item><item><title>Critical: Rust `arrayref` Crate Poisoned with Infostealer Malware</title><link>https://runtimerebel.com/blog/critical-rust-arrayref-crate-poisoned-with-infostealer-malware</link><guid isPermaLink="true">https://runtimerebel.com/blog/critical-rust-arrayref-crate-poisoned-with-infostealer-malware</guid><description>Hackers compromised `arrayref`, `append-only-vec`, and `internment` Rust crates to inject infostealer malware, impacting developers and downstream projects.</description><pubDate>Fri, 21 Aug 2026 00:43:46 GMT</pubDate><category>Rust</category><category>Supply Chain Attack</category><category>Infostealer</category><category>DPRK</category><category>Crates Io</category></item><item><title>Rust Supply Chain Attack Puts Build-Time Malware in Crates</title><link>https://runtimerebel.com/blog/rust-supply-chain-attack-puts-build-time-malware-in-crates</link><guid isPermaLink="true">https://runtimerebel.com/blog/rust-supply-chain-attack-puts-build-time-malware-in-crates</guid><description>Compromised maintainer accounts on crates.io pushed malicious Rust crates with build-time malware executing during compilation.</description><pubDate>Fri, 21 Aug 2026 00:43:05 GMT</pubDate><category>Supply Chain Attack</category><category>Rust</category><category>Crates Io</category><category>Malware</category></item><item><title>msaRAT: Chaos Ransomware&apos;s Covert Browser-Based C2</title><link>https://runtimerebel.com/blog/msarat-chaos-ransomware-s-covert-browser-based-c2</link><guid isPermaLink="true">https://runtimerebel.com/blog/msarat-chaos-ransomware-s-covert-browser-based-c2</guid><description>Cisco Talos uncovers msaRAT, a new Rust-based RAT used by Chaos ransomware for covert C2 via Chrome DevTools Protocol, evading detection.</description><pubDate>Sat, 08 Aug 2026 00:57:54 GMT</pubDate><category>Chaos Ransomware</category><category>RAT</category><category>Rust</category><category>msaRAT</category><category>Chrome DevTools Protocol</category></item><item><title>LabubaRAT: Rust-Based RAT Masquerades as NVIDIA Software on Windows</title><link>https://runtimerebel.com/blog/labubarat-rust-based-rat-masquerades-as-nvidia-software-on-windows</link><guid isPermaLink="true">https://runtimerebel.com/blog/labubarat-rust-based-rat-masquerades-as-nvidia-software-on-windows</guid><description>Blackpoint Cyber researchers warn of LabubaRAT, a new Rust-based remote access trojan disguised as NVIDIA software, granting full control over Windows hosts.</description><pubDate>Tue, 14 Jul 2026 17:20:39 GMT</pubDate><category>LabubaRAT</category><category>Rust</category><category>NVIDIA</category><category>RAT</category><category>Windows</category><category>Remote Access Trojan</category></item><item><title>MODBEACON RAT: Silver Fox Uses gRPC for Stealthy C2</title><link>https://runtimerebel.com/blog/modbeacon-rat-silver-fox-uses-grpc-for-stealthy-c2</link><guid isPermaLink="true">https://runtimerebel.com/blog/modbeacon-rat-silver-fox-uses-grpc-for-stealthy-c2</guid><description>A new Rust-based MODBEACON RAT, linked to the Silver Fox cybercrime group, employs gRPC streaming for encrypted C2, propagated via SEO poisoning.</description><pubDate>Fri, 10 Jul 2026 14:30:03 GMT</pubDate><category>MODBEACON</category><category>RAT</category><category>Silver Fox</category><category>gRPC</category><category>C2</category><category>Rust</category><category>SEO Poisoning</category></item><item><title>npm Supply Chain Attack: IronWorm and Miasma Malware Analysis</title><link>https://runtimerebel.com/blog/npm-supply-chain-attack-ironworm-and-miasma-malware-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/npm-supply-chain-attack-ironworm-and-miasma-malware-analysis</guid><description>Threat actors target npm developers with the IronWorm info stealer and Miasma worm, utilizing eBPF rootkits to exfiltrate secrets and ensure persistence.</description><pubDate>Fri, 05 Jun 2026 20:40:47 GMT</pubDate><category>NPM</category><category>IronWorm</category><category>Miasma</category><category>Supply Chain Attack</category><category>Malware</category><category>Rust</category><category>eBPF</category></item><item><title>IronWorm: Rust-Written Malware Hits npm Supply Chain Developers</title><link>https://runtimerebel.com/blog/ironworm-rust-written-malware-hits-npm-supply-chain-developers</link><guid isPermaLink="true">https://runtimerebel.com/blog/ironworm-rust-written-malware-hits-npm-supply-chain-developers</guid><description>Analysis of the Rust-written IronWorm malware targeting npm supply chain developers.</description><pubDate>Fri, 05 Jun 2026 01:01:31 GMT</pubDate><category>IronWorm</category><category>Rust</category><category>NPM</category><category>Supply Chain Attack</category><category>Credential Theft</category><category>Developer Security</category></item><item><title>Microsoft Rust-Based Coreutils for Windows: Security Analysis</title><link>https://runtimerebel.com/blog/microsoft-rust-based-coreutils-for-windows-security-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-rust-based-coreutils-for-windows-security-analysis</guid><description>Microsoft is adopting Rust-based Coreutils for Windows, offering a memory-safe alternative to legacy GnuWin32 tools. Learn about the security implications.</description><pubDate>Thu, 04 Jun 2026 09:27:24 GMT</pubDate><category>Microsoft</category><category>Rust</category><category>Coreutils</category><category>Memory Safety</category><category>Windows Security</category></item><item><title>Microsoft Coreutils for Windows: Security and Memory Safety Analysis</title><link>https://runtimerebel.com/blog/microsoft-coreutils-for-windows-security-and-memory-safety-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-coreutils-for-windows-security-and-memory-safety-analysis</guid><description>Microsoft introduces native Linux Coreutils for Windows via Rust. Analyze the security impact, memory safety benefits, and potential living-off-the-land risks.</description><pubDate>Wed, 03 Jun 2026 01:09:39 GMT</pubDate><category>Microsoft</category><category>Coreutils</category><category>Rust</category><category>Windows Security</category><category>Living-off-the-Land</category></item><item><title>YARA-X 1.17.0 Release: Enhanced Performance for Malware Analysis</title><link>https://runtimerebel.com/blog/yara-x-1-17-0-release-enhanced-performance-for-malware-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/yara-x-1-17-0-release-enhanced-performance-for-malware-analysis</guid><description>YARA-X version 1.17.0 release introduces five performance improvements and a bugfix for the Rust-based malware detection engine. Enhance your scanning speed.</description><pubDate>Sun, 31 May 2026 16:31:57 GMT</pubDate><category>YARA X</category><category>Malware Detection</category><category>Rust</category><category>Threat Hunting</category><category>SANS ISC</category></item><item><title>Fake OpenAI Privacy Filter Repository Distributes Rust Info-Stealer</title><link>https://runtimerebel.com/blog/fake-openai-privacy-filter-repository-distributes-rust-info-stealer</link><guid isPermaLink="true">https://runtimerebel.com/blog/fake-openai-privacy-filter-repository-distributes-rust-info-stealer</guid><description>A malicious Hugging Face repository impersonating OpenAI&apos;s privacy tool reached 244k downloads, delivering a Rust-based information stealer to Windows users.</description><pubDate>Mon, 11 May 2026 09:17:45 GMT</pubDate><category>Hugging Face</category><category>OpenAI</category><category>Infostealer</category><category>Rust</category><category>Supply Chain Attack</category><category>Malicious Repositories</category></item><item><title>VENON Malware: Rust-Based Banking Trojan Targets Brazilian Banks</title><link>https://runtimerebel.com/blog/venon-malware-rust-based-banking-trojan-targets-brazilian-banks</link><guid isPermaLink="true">https://runtimerebel.com/blog/venon-malware-rust-based-banking-trojan-targets-brazilian-banks</guid><description>A new Rust-based malware called VENON is targeting 33 Brazilian banks with credential-stealing overlays, signaling a shift in Latin American cybercrime TTPs.</description><pubDate>Thu, 12 Mar 2026 20:12:38 GMT</pubDate><category>VENON</category><category>Banking Trojan</category><category>Rust</category><category>Brazil</category><category>Credential Theft</category></item><item><title>Malicious Rust Crates Steal Developer Secrets on Crates.io</title><link>https://runtimerebel.com/blog/malicious-rust-crates-steal-developer-secrets-on-crates-io</link><guid isPermaLink="true">https://runtimerebel.com/blog/malicious-rust-crates-steal-developer-secrets-on-crates-io</guid><description>Five malicious Rust crates on crates.io masquerade as time utilities to exfiltrate .env files, targeting developer environments and CI/CD pipelines.</description><pubDate>Wed, 11 Mar 2026 08:16:43 GMT</pubDate><category>Rust</category><category>Crates Io</category><category>Secrets Theft</category><category>Supply Chain Security</category><category>Developer Tools</category></item><item><title>YARA-X 1.14.0 Release: Enhanced Performance and Module Stability</title><link>https://runtimerebel.com/blog/yara-x-1-14-0-release-enhanced-performance-and-module-stability</link><guid isPermaLink="true">https://runtimerebel.com/blog/yara-x-1-14-0-release-enhanced-performance-and-module-stability</guid><description>The YARA-X 1.14.0 release introduces critical module improvements and bug fixes to optimize high-performance malware scanning and threat detection.</description><pubDate>Sat, 07 Mar 2026 12:39:11 GMT</pubDate><category>YARA X</category><category>Malware Detection</category><category>Virustotal</category><category>Threat Hunting</category><category>Rust</category></item></channel></rss>