Castanet
Russian-linked Threat Actors Deploy SocGholish Malware via Fake Browser Updates
First seen 26 Nov 2025, 19:33 UTC
•



+6
•77% similarity
•30.6
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Cybersecurity researchers at Arctic Wolf Labs have identified a cyberattack campaign utilizing fake browser update notifications to distribute SocGholish malware. This campaign is linked to Russian threat actors and targets unsuspecting users, potentially compromising their systems.
ThreatCluster AI