Gbhackers Fake Huorong Site Distributes ValleyRAT Backdoor to Users
Article Content
Browse articles
A fraudulent Huorong security website has been identified as a source of the ValleyRAT backdoor, which compromises user systems. The malware campaign targets users who mistakenly visit the malicious site, which is only slightly different from the legitimate Huorong domain. This incident highlights the risks associated with typosquatting in cybersecurity.
Ask AI about this cluster
Answers cite the sources they use
Updated 184d ago How this analysis works
Timeline
2026-02-23
Malwarebytes reports on fake Huorong site infecting users
2026-02-24
GBHackers publishes article on ValleyRAT backdoor campaign
More articles in this cluster (3)
Following this threat?
Track Silver Fox APT Group and ValleyRat in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Slovakia Discovers Russian Backdoor in Traffic Speed Cameras Slovakia's national security service NBU has issued a security alert regarding NERO R-ONE high-speed traffic cameras, which were found to contain a backdoor allowing access via SMS from hardcoded Russian phone numbers. The investigation was prompted by opposition accusations about the cameras' Russian origin and links…
Malware Campaign Disables Windows Update in Corporate China Microsoft detected an active malware campaign targeting corporate systems in China, where attackers use fake software download sites to distribute malware that disables Windows Update and weakens Microsoft Defender. The malware is disguised as legitimate software, tricking users into installing it while it modifies…