Skip to content

UAC

Gbhackers Mayura Kathir May 19, 2026

UAC-0184 uses a multi‑stage malware chain that abuses bitsadmin and HTA loaders to reach a heavily obfuscated payload bundle, ultimately hiding behind signed binaries such as VSLauncher.exe and PassMark Endpoint to gain stealthy network access on Ukrainian military networks. CERT‑UA reporting through 2024–2025 highlights a focus on accounts belonging to the Armed Forces of Ukraine, […]