New Threat Actor 'Void Arachne' Targets Chinese Users with Malicious VPN Installers

Started by ixsky,

Previous topic - Next topic

ixsky

New Threat Actor 'Void Arachne' Targets Chinese Users with Malicious VPN Installers

Chinese-speaking users are the target of a never-before-seen threat activity cluster codenamed Void Arachne that employs malicious Windows Installer (MSI) files for virtual private networks (VPNs) to deliver a command-and-control (C&C) framework called Winos 4.0.
"The campaign also promotes compromised MSI files embedded with nudifiers and deepfake pornography-generating software, as well as

Source: New Threat Actor 'Void Arachne' Targets Chinese Users with Malicious VPN Installers