PoeLLM malware reads a GitHub poem to find its C2 servers and has hit more than 3,400 servers, mostly AI tools like LiteLLM ...
Nozomi Networks Labs has uncovered Cling, a botnet that infects exposed IoT and networking devices while hiding command ...
PoeLLM botnet hides its command-and-control address in a GitHub poem, compromising 3,400-plus servers running AI tools to ...
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle ...
ThreatDown discovered a Docker botnet that installs an unmodified open-source agent framework, overwrites its persona file, ...
What happenedThe threat intelligence team at Lumen Technologies, "Black Lotus Labs," has discovered a malware with a strange mechanism. It is called PoeLLM. This malware decodes addresses hidden ...
Canto Incognito has infected over 3,400 servers, using exposed AI and LLM infrastructure for crypto mining and botnet growth.
Nozomi reports that Cling botnet uses STUN traffic to conceal command-and-control activity and attacks against vulnerable IoT ...
A malware hunts for hidden messages in poems posted on GitHub.
What does it mean to 'identify and prevent attacks at the source'?Reading active cyber defense through the lens of 'time ...
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads.
Black Lotus Labs attributed the PoeLLM malware to an Italian-speaking criminal, and named the financially motivated campaign Canto Incognito because it hides the malicious commands in a poem posted to ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results