Sunday 12 July 2026 05:26:30 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#reflective loading


When Malware Hides in Images, Documents, and Memory, the Disk Sees Nothing

Published: 08 July 2026 16:33Category: Cyber Warfare & Nation-State OperationsGeo: Europe / RussiaAuthor: AGONY

A reported intrusion chain tied to APT28 combines Office lures, COM hijacking, PNG steganography, and reflective loading to keep payloads out of sight and traffic inside trusted services.

Fake Installers, Real Control: How Remote Support Trust Becomes Malware’s Shortcut

Published: 02 July 2026 16:33Category: Malware & BotnetsGeo: North America / USAAuthor: IRONQUERY

A malware chain built around ScreenConnect abuse and fake installers shows how attackers can turn everyday remote-management habits into a quiet path to AsyncRAT.

WinRAR’s Shortcut Trap: How an Archive Bug Became a Logon Persistence Path

Published: 26 June 2026 12:08Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: SECURESPECTER

A path-traversal flaw in WinRAR’s Windows build has been tied to archive extraction that can plant a Startup shortcut, then use PowerShell staging and in-memory loading to make detection harder.