Chisel Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
19
occurrences
First Seen
December 17, 2025
Last Seen
July 19, 2026

Related Threat Clusters

  • Cisco Fixes Critical AsyncOS Vulnerability Under Attack

    Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…

    11 articles · Updated January 15, 2026
  • Operation Escaneo Targets Latin American Critical Infrastructure

    Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…

    4 articles · Updated June 18, 2026
  • New Spirals Ransomware Executes Rapid Double Extortion Attack in South Asia

    In June 2026, a new ransomware family named Spirals executed a double extortion attack against an IT services company in South Asia, completing the operation in under 24 hours. The attackers gained initial access by…

    12 articles · Updated July 16, 2026
  • ModHeader Extension Removed for Covert Data Collection

    The ModHeader browser extension, used by approximately 1.6 million users across Chrome and Edge, was removed after researchers discovered a dormant data-collection capability embedded in its signed release. The…

    8 articles · Updated July 14, 2026
  • AI-Driven Cyber Attacks Target Latin American Governments and Financial Sectors

    Trendmicro's TrendAI™ Research has identified two AI-augmented threat campaigns, SHADOW-AETHER-040 and SHADOW-AETHER-064, targeting government and financial organizations in Latin America. These campaigns began in late…

    4 articles · Updated May 11, 2026
  • Hackers Exploit QEMU VMs to Evade Detection and Deploy Ransomware

    Hackers are utilizing QEMU, an open-source virtual machine emulator, to create hidden Linux environments within Windows systems, effectively evading endpoint security tools. This method allows for long-term access,…

    8 articles · Updated April 17, 2026
  • Phishing Campaign Spoofs Ukrainian CERT to Deploy AGEWHEEZE RAT

    Between March 26 and 27, 2026, a phishing campaign targeted Ukrainian institutions, including government entities, healthcare providers, and educational institutions, by spoofing the Computer Emergency Response Team of…

    12 articles · Updated March 31, 2026
  • Parrot OS 7.0 Released with Major Overhaul and New AI Tools

    Parrot OS 7.0, codenamed Echo, has been officially released, featuring a complete system rewrite based on Debian 13. This version introduces KDE Plasma 6, Wayland by default, and an expanded suite of penetration testing…

    2 articles · Updated December 27, 2025
  • Cisco Confirms Exploitation of AsyncOS Zero-Day by Chinese Hackers

    Cisco has reported an unpatched zero-day vulnerability (CVE-2025-20393) in its AsyncOS software, affecting Secure Email Gateway and Secure Email and Web Manager appliances. The vulnerability is being actively exploited…

    5 articles · Updated December 17, 2025

Recent Intelligence Reports

  • New Spirals Ransomware Deployed Across South Asian IT Firm in Under 24 Hours — www.security.com · July 19, 2026
  • New Spirals ransomware can lock down an entire network in under 24 hours — Pcquest · July 16, 2026
  • New Spirals ransomware encrypts victim network in under 24 hours — Bleepingcomputer · July 16, 2026
  • Operation Escaneo Signals Shift in LatAm Threat Landscape — Darkreading · June 18, 2026
  • LATAM Infrastructure Hit by Fortinet and Ivanti Exploits — Infosecurity-Magazine · June 18, 2026
  • Operation Escaneo: Infrastructure Exposure, TTP Analysis, and Attribution Assessment of an ... — Cloudsek · June 17, 2026
  • Vibe Hacking: Two AI — Trendmicro · May 11, 2026
  • Vibe Hacking: Two AI — Trendmicro · May 11, 2026

CVSS v3.1 Breakdown