Skip to content

Threat Actors Hiding stealthy PURELOGS Payload Within a Weaponized PNG File

Cybersecuritynews Tushar Subhra Dutta January 21, 2026

A newly discovered attack campaign has exposed a sophisticated delivery method for the PURELOGS infostealer, a commodity malware sold as a service on underground forums. Threat actors are using weaponized PNG files hosted on legitimate infrastructure to deliver the payload while evading detection systems. The campaign begins with deceptive phishing emails disguised as pharmaceutical invoices, […]

Extracted Entities

Attack Types (2)

Malware (1)

MITRE ATT&CK (1)