❌

Normal view

Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth

14 August 2026 at 13:08
The threat actor known as HoneyMyte (akaΒ Mustang Panda) has been observed deploying an updated version of the CoolClient backdoor with a signed Windows kernel-mode rootkit that can hide and protect malicious processes, files, registry objects, and command-and-control (C2) network information. Russian cybersecurity vendor Kaspersky said it identified victims in Myanmar, Mongolia, Pakistan,

Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers

14 August 2026 at 11:07
Cybersecurity researchers have detailed a post-exploitation technique that enables theΒ Chrome DevTools Protocol (CDP)Β inside a running Google Chrome or Microsoft Edge process on Windows, allowing an operator to access cookies, saved data, and authenticated browser sessions. The technique assumes that an operator already has code execution on the Windows host and does not involve

❌