National Cyber Warfare Foundation (NCWF)

Hackers Use Fake VPN and Browser NSIS Installers to Deliver Winos 4.0 Malware


0 user ratings
2025-05-25 08:23:51
milo
Attacks

 - archive -- 
Cybersecurity researchers have disclosed a malware campaign that uses fake software installers masquerading as popular tools like LetsVPN and QQ Browser to deliver the Winos 4.0 framework.
The campaign, first detected by Rapid7 in February 2025, involves the use of a multi-stage, memory-resident loader called Catena.
"Catena uses embedded shellcode and configuration switching logic to stage



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/05/hackers-use-fake-vpn-and-browser-nsis.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Attacks



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.