Tag: Malicious VPN Installers

New Threat Actor ‘Void Arachne’ Targets Chinese Users with Malicious VPN Installers
News

New Threat Actor ‘Void Arachne’ Targets Chinese Users with Malicious VPN Installers

A never-before-seen threat activity cluster nicknamed Void Arachne is targeting Chinese-speaking users. It uses malicious Windows Installer (MSI) files for virtual private networks (VPNs) to distribute the Winos 4.0 command-and-control (C&C) framework. In addition, the campaign pushes AI voice and facial technology, compromised MSI files bundled with deepfake pornography-generating software and nudifiers, according to a technical report released today by Trend Micro researchers Peter Girnus, Aliakbar Zahravi, and Ahmed Mohamed Ibrahim. The effort disseminates malware via social media, messaging apps, and [Search Engine Optimization] poisoning techniques. The security provider claimed that the assaults involved promoting well-known programs like Google Chrome read more New Thr...