The provided articles do not describe a cybersecurity tool or attacker named 'Plink.' Instead, they focus on Triofox vulnerabilities being exploited by UNC6485 to gain unauthenticated remote access and to deploy remote-access tools via Triofox’s antivirus features.
The provided articles do not describe a cybersecurity tool or attacker named 'Plink.' Instead, they focus on Triofox vulnerabilities being exploited by UNC6485 to gain unauthenticated remote access and to deploy remote-access tools via Triofox’s antivirus features. This highlights how remote-access software with built-in features can be abused for persistence and tool deployment, underscoring risk from such applications in cybersecurity.
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…
Cyber threat actors are exploiting a critical unauthenticated access vulnerability in Gladinet’s Triofox file-sharing platform, tracked as CVE-2025-12480. This vulnerability allows unauthorized administrative access and…
On May 25, 2026, Fedora released updates for Putty addressing multiple security vulnerabilities, including CVE-2026-48850, a double free vulnerability in RSA KEX code, CVE-2026-48851, which affects TELNET session data,…
Hackers are exploiting a critical unauthenticated access vulnerability (CVE-2025-12480) in Gladinet's Triofox file-sharing platform. This flaw allows attackers to bypass authentication and gain administrative access,…
Hackers have exploited a critical unauthenticated access vulnerability (CVE-2025-12480) in Gladinet's Triofox file-sharing platform, allowing them to gain unauthorized administrative access and execute remote code. The…