Related Threat Clusters
-
Critical Synology DSM Vulnerability Enables Remote Command Execution
Synology has released an urgent security update for its DiskStation Manager (DSM) software to address a critical vulnerability, CVE-2026-32746, which could allow unauthenticated remote attackers to execute arbitrary…
3 articles · Updated March 26, 2026 -
Torg Grabber Malware Targets 728 Crypto Wallets with Advanced Techniques
Torg Grabber, a new infostealer malware, is actively targeting 728 cryptocurrency wallet extensions and other applications, including password managers and communication tools. The malware employs the ClickFix technique…
2 articles · Updated March 27, 2026 -
Critical IDrive Vulnerability Allows Privilege Escalation on Windows
A critical vulnerability, tracked as CVE-2026-1995, has been discovered in the IDrive Cloud Backup Client for Windows, affecting versions 7.0.0.63 and earlier. This flaw allows authenticated low-privilege users to…
4 articles · Updated March 26, 2026 -
Torg Grabber Malware Evolves to Encrypted REST API for C2 Operations
Torg Grabber, an information-stealing malware, has transitioned from using Telegram for data exfiltration to a more sophisticated encrypted REST API command-and-control (C2) channel, now utilizing Cloudflare for…
2 articles · Updated March 26, 2026
Recent Intelligence Reports
- Cybercriminals Deploy Torg Grabber Malware to Target 728 Crypto Wallet Extensions — Bitget · March 27, 2026
- New Torg Grabber Stealer Moves From Telegram Exfiltration to Encrypted REST API C2 — Cybersecuritynews · March 26, 2026
- Torg Grabber Malware Shifts from Telegram Exfiltration to Encrypted REST API for C2 — Gbhackers · March 26, 2026
- Synology DiskStation Manager Vulnerability Puts Users at Risk of Remote Command ... — Gbhackers · March 26, 2026
- IDrive for Windows Vulnerability Allows Attackers to Escalate Privileges and Gain ... — Gbhackers · March 26, 2026
- New Torg Grabber infostealer malware targets 728 crypto wallets — Bleepingcomputer · March 25, 2026