PHANTOMPULSE spreads via Obsidian plugin abuse in REF6598 campaign, targeting finance and crypto users, bypassing AV controls ...
I didn't think I'd care this much about a command, but here we are.
CERT-UA links the AgingFly credential-stealing campaign to phishing, browser theft, and modular remote access.
JanelaRAT hits Latin American banks with 14,739 attacks in Brazil in 2025, enabling credential theft and financial espionage ...