GrayCharlie, a threat actor, has been embedding malicious JavaScript into WordPress sites since mid-2023 to deliver the NetSupport RAT and Stealc malware to users. This group is associated with the SmartApeSG cluster…
2 articles · Updated February 23, 2026
Recent Intelligence Reports
GrayCharlie Injects Malicious JavaScript into WordPress Sites to Deliver NetSupport RAT and Stealc— Cybersecuritynews · February 23, 2026