Cybersecuritynews XWorm RAT Campaign Utilizes Phishing and CVE-2018-0802 Exploit
Article Content
Browse articles
A new phishing campaign has been detected distributing an updated variant of the XWorm Remote Access Trojan (RAT), which exploits CVE-2018-0802 to evade detection. This campaign targets Microsoft Windows systems and is actively traded in Telegram marketplaces, affecting numerous users since its first tracking in 2022.
Ask AI about this cluster
Answers cite the sources they use
Updated 210d ago How this analysis works
Timeline
2018-02-13
CVE-2018-0802 published
2022-01-01
XWorm first tracked
2026-02-13
New XWorm RAT campaign reported
More articles in this cluster (4)
Following this threat?
Track XWorm in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Cybercriminals Use Fake AI Agents to Steal Crypto Wallets Cybercriminals are exploiting interest in Agentic AI by creating fake AI trading agents to lure crypto users into downloading malware. This malware, known as Needle Stealer, replaces legitimate browser wallet extensions like MetaMask and Coinbase with malicious versions that capture user credentials. The attacks were…
2CLoader Malware Loader Distributes Vidar and Remus Infostealers Zscaler ThreatLabz has identified a new malware loader named 2CLoader, which is used to deliver infostealers Vidar and Remus, as well as XWorm RAT. The loader employs advanced evasion techniques to bypass security measures, including indirect system calls and anti-debugging checks. Organizations are advised to enhance…