New Threat Actor ‘Void Arachne’ Targets Chinese Users with Malicious VPN Installers
A never-before-seen threat activity cluster nicknamed Void Arachne is targeting Chinese-speaking users. It uses malicious Windows Installer (MSI) files for virtual private networks (VPNs) to distribute the Winos 4.0 command-and-control (C&C) framework.
In addition, the campaign pushes AI voice and facial technology, compromised MSI files bundled with deepfake pornography-generating software and nudifiers, according to a technical report released today by Trend Micro researchers Peter Girnus, Aliakbar Zahravi, and Ahmed Mohamed Ibrahim.
The effort disseminates malware via social media, messaging apps, and [Search Engine Optimization] poisoning techniques.
The security provider claimed that the assaults involved promoting well-known programs like Google Chrome read more New Thr...

