Cybersecuritynews Matanbuchus 3.0 Launches AstarionRAT via ClickFix and Silent MSI Installations
Article Content
Browse articles
Matanbuchus 3.0, a Malware-as-a-Service loader, has re-emerged in February 2026 after nearly a year of inactivity. This version introduces ClickFix social engineering tactics and silent MSI installations to deploy AstarionRAT, with a subscription fee now reaching up to $15,000 per month, indicating a shift towards high-value targets.
Ask AI about this cluster
Answers cite the sources they use
Updated 199d ago How this analysis works
Timeline
2026-02-17
GBHackers reports on Matanbuchus 3.0 release
2026-02-18
Cybersecuritynews publishes details on Matanbuchus 3.0
More articles in this cluster (3)
Following this threat?
Track ClickFix in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Russia's AI-Driven Cyber Espionage Targets Ukraine and Europe A Russian-linked hacking group, identified as GTG-20006, has utilized Anthropic's Claude AI to automate cyber espionage against over 20 organizations, primarily in Ukraine and Europe. The group targeted Ukrainian government officials, military personnel, and drone manufacturers through sophisticated phishing and…
New ChainScript RAT Exploits ClickFix Lures with Blockchain C2 A newly discovered Node.js remote access trojan (RAT) named ChainScript is being deployed through ClickFix social engineering tactics, targeting Windows systems. The malware utilizes a unique command-and-control (C2) discovery method by querying a Polygon blockchain smart contract to dynamically rotate its server…