CVE Tools

ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories

The Hacker NewsBy The Hacker News

PoC publicpepesoft.exeUAT-11795Starland RAT

Our summary

This week’s ThreatsDay highlights a surge in malicious activity involving game cheat spyware, fast-spreading ransomware, and new exploit techniques. Researchers discovered 11 malicious NuGet packages posing as game utilities that download a Python payload named pepesoft.exe. Meanwhile, the financially motivated threat group UAT-11795 is distributing Starland RAT and WLDR agent through trojanized installers for popular software like MobaXterm and Zoom. Additionally, a new ransomware family called Spirals encrypted an entire network within 24 hours after breaching an IIS web server. CISA also added two actively exploited vulnerabilities—CVE-2026-46817 and CVE-2023-4346—to its KEV catalog. These developments underscore the importance of patching known flaws and scrutinizing seemingly benign downloads.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store