Cybersecurity Threat Research ‘Weekly’ Recap. Attackers abused fake installers, developer-platform lures, and AI-driven tooling to deliver loaders and steal credentials, including campaigns tied to Silver Fox, GlassWorm, JSCEAL, TA419, Remcos, and Vidar. Alongside these tradecraft shifts, the roundup highlighted active zero-day exploitation in Citrix NetScaler and PaperCut MF, plus supply-chain and exposed-credential risks involving MALFEX and leaked GitHub datasets.
#SilverFox #GlassWorm #JSCEAL #TA419 #Remcos #Vidar #CitrixNetScaler #CVE-2026-88771 #CVE-2026-88772 #PaperCutMF #AdaptixC2 #MALFEX #TIKTOUK #Jewelbug #Warlock