Curly COMrades strike again
Russia's Curly COMrades is abusing Microsoft's Hyper-V hypervisor in compromised Windows machines to create a hidden Alpine Linux-based virtual machine that bypasses endpoint security tools, giving the spies long-term network access to snoop and deploy malware.…
source https://go.theregister.com/feed/www.theregister.com/2025/11/04/russian_spies_pack_custom_malware/

0 comments:
Post a Comment