APT-LY-1009使用VenomRAT以及Telegram Bot针对亚美尼亚政府的攻击活动分析
概述 近日,安恒信息猎影实验室在在日常威胁狩猎过程中发现一例上传自亚美尼亚的恶意LNK文件,文件运行后将加载远程HTA文件,执行多段脚本指令,下载恶意文件加载器...
Read More Read More
APT-LY-1009使用VenomRAT以及Telegram Bot针对亚美尼亚政府的攻击活动分析最先出现在 安恒威胁情报中心。
Related Vulnerabilities
- CVE-2026-5992: A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of HIGH
- CVE-2026-34944: Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64 MEDIUM
- CVE-2026-35659: OpenClaw before 2026.3.22 contains a service discovery vulnerability where TXT metadata from Bonjour MEDIUM
- CVE-2026-5448: X.509 date buffer overflow in wolfSSL_X509_notAfter / wolfSSL_X509_notBefore. A buffer overflow may LOW
- CVE-2026-40228: In systemd 259, systemd-journald can send ANSI escape sequences to the terminals of arbitrary users LOW
Related Coverage
Threat Actors