Microsoft has warned of a new Remote Access Trojan (RAT) named StilachiRAT that employs advanced techniques to evade detection and steal sensitive data. The malware gains persistence through the Windows service control manager and targets credentials stored in browsers, digital wallet information, clipboard data, and system information. StilachiRAT is particularly interested in cryptocurrency wallets and allows threat actors to run commands remotely, with capabilities including device restarting, application running, and system suspension.

Phony CAPTCHA checks trick targets to download malware
Cyber attackers are using fake CAPTCHA checks to trick users into downloading malware, according to HP Wolf’s Threat Insight Report. The method exploits the complacency