TencShell is a malware family tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed May 14, 2026; most recent activity July 15, 2026.
Chinese-linked threat actors have integrated Anthropic's Claude Code and DeepSeek-v4-pro into a cyber espionage campaign targeting government entities and financial organizations in Taiwan. The operation utilizes…
A sophisticated malware framework named TencShell has been identified, capable of screen control, browser artifact access, and User Account Control (UAC) bypass. This framework allows attackers to gain full remote…