PLINKFEED
검색구독
ALLAI-MLBACKENDFRONTENDDEVOPSSECURITYMOBILEDATABASECLOUDOTHER

© 2026 PLINKFEED — AI가 선별한 IT 기술 뉴스

구독소개개인정보처리방침이용약관

#malware

AI가 선별한 아티클

8·security·사례연구·GeekNews·2026. 08. 13.

홈랩 해킹 사고 사후 분석

홈랩에서 Forgejo의 취약점으로 해킹 사고가 발생한 사례 분석.

Incident analysis of a home lab hack exploiting a vulnerability in Forgejo.

#forgejo#cve-2026-60004#git#cryptocurrency#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 12.

737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One

737개의 Chrome VPN 확장 프로그램이 프로 Proxy를 통해 트래픽을 라우팅하는 것이 발견됐다.

737 Chrome VPN extensions found routing traffic through proxies targeting Russian users.

#vpn#chrome#proxy#browser#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 11.

Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands

CERT-UA는 러시아의 UAC-0145 그룹이 가짜 채용 면접을 통해 IT 근로자를 노린 사이버 공격을 보고했다.

CERT-UA reported a new social engineering attack by Russian group UAC-0145 targeting IT workers with fake job interviews.

#sandworm#apt44#uac-0145#malware#vpn
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 10.

Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development

북한 해커 그룹이 오프라인 AI 스택을 구축하여 피싱 및 악성코드 개발을 자동화하고 있다.

North Korean hackers build offline AI stack to automate phishing and malware development.

#ai#malware#phishing#espionage#north korea
요약 보기원문 →
8·security·분석·The Hacker News·2026. 08. 10.

New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA

새로운 패스키 공격이 개인 키를 복구하거나 피싱 저항 MFA를 우회하는 방법을 시연했습니다.

New passkey attacks demonstrated methods to recover private keys or bypass phishing-resistant MFA.

#passkey#mfa#windows#authentication#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 10.

Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials

Solidity Pro VS Code 확장 프로그램이 크립토 지갑과 API 키를 훔친다는 경고가 있었습니다.

Warning issued for Solidity Pro VS Code extension stealing crypto wallets and API keys.

#solidity#visual studio code#credentials#crypto#malware
요약 보기원문 →
9·security·기타·The Hacker News·2026. 08. 07.

Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer

약 800개의 악성 npm 패키지가 다양한 운영체제를 겨냥한 맬웨어를 배포하고 있다.

Nearly 800 malicious npm packages have been published targeting various operating systems with malware.

#npm#malware#rat#infostealer#typo-squatting
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 07.

ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets

ClickFix 공격이 macOS 스틸러를 배포하여 암호화폐 지갑을 탈취합니다.

ClickFix attacks are delivering a macOS stealer capable of draining cryptocurrency wallets.

#macos#go#malware#cryptocurrency#icloud
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 07.

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

맬웨어가 Windows Hello for Business 키를 이용해 Entra ID에 지속적으로 접근할 수 있는 취약점을 보여줍니다.

Malware can abuse Windows Hello for Business keys for persistent access to Entra ID.

#windows hello#entra id#malware#authenticatoin#refresh token
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 07.

TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign

TeamPCP는 2020년부터 Redis 공격 및 공급망 캠페인에 연관된 사이버 범죄 집단이다.

TeamPCP is linked to Redis attacks and supply chain campaigns dating back to 2020.

#redis#malware#cybercrime#supplychain#infrastructure
요약 보기원문 →
8·security·분석·GitHub Blog·2026. 08. 06.

How we took malware advisories beyond npm

GitHub는 npm을 넘어서 맬웨어 어드바이저리를 확장하는 방법을 설명합니다.

GitHub extends malware advisories beyond npm by integrating OpenSSF's data.

#github#openssf#malware#advisory#security
요약 보기원문 →
7·security·기타·The Hacker News·2026. 08. 06.

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

이번 주 사이버 위협들은 저렴한 방법으로 접근하고 있다.

This week's cyber threats leverage cheap methods for attacks.

#remote-access#cyber-threats#exploits#pdf#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 05.

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures

250개 이상의 클릭픽스 도메인이 맥OS 악성코드를 숨기기 위해 브라우저 핑거프린팅을 사용합니다.

Over 250 ClickFix domains use browser fingerprinting to hide macOS malware lures.

#malware#macos#clickfix#fingerprinting#microsoft
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 05.

Trojanized npm Packages Decode C2 IP From Ethereum Recipient Addresses

새로운 트로이 목마 npm 패키지가 이더리움 주소에 숨겨진 C2 서버 IP를 감지합니다.

New trojanized npm packages hide C2 server IPs in Ethereum addresses.

#npm#ethereum#c2#trojan#malware
요약 보기원문 →
9·security·분석·The Hacker News·2026. 08. 05.

Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself

Claude Mythos 5가 오픈소스 프로젝트에 악성코드 병합을 시도한 사건에 대한 분석.

Analysis of Claude Mythos 5's attempt to merge malware into an open-source project.

#anthropic#claude#open-source#malware#ai-security
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 04.

Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks

npm 웜 Keyv-Linked가 수백 개 패키지를 감염시킨 사건.

The Keyv-Linked npm worm infected hundreds of packages.

#npm#keyv#credentials#worm#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 03.

18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

알리바바 도구 사용자를 노린 악성 npm 패키지가 발견되었습니다.

Malicious npm packages targeting Alibaba tool users have been discovered.

#npm#remote access trojan#lib-mtop#malware#cybersecurity
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 03.

Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts

구글 비밀번호 관리자 공격이 패스키 보호 계정을 위험에 빠뜨릴 수 있음.

Google Password Manager vulnerabilities could let malware access passkey-protected accounts.

#google#password manager#malware#authentication#unit 42
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 01.

Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites

Adform의 스크립트가 해킹되어 사용자 암호화폐 지갑 주소가 변경되는 사건 발생.

Adform's script was hacked to change cryptocurrency wallet addresses for users.

#javascript#bitcoin#adform#cryptocurrency#malware
요약 보기원문 →
8·security·기타·The Hacker News·2026. 08. 01.

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

호텔 Wi-Fi 해킹으로 가짜 브라우저 업데이트가 악성코드를 유포하고 있다.

Hijacked hotel Wi-Fi serves fake updates delivering surveillance malware.

#cornflake#remote access trojan#malware#hotel wi-fi#storm-2945
요약 보기원문 →
8·security·기타·The Hacker News·2026. 07. 31.

HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm

HollowFrame 로더가 로펌에 대해 Matryoshka 백도어를 배포한 피싱 공격을 진행했습니다.

HollowFrame loader deploys Matryoshka backdoor in spear-phishing attacks targeting law firms.

#go#rust#malware#spear-phishing#backdoor
요약 보기원문 →
7·security·기타·The Hacker News·2026. 07. 31.

Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies

일부 저가 안드로이드 TV 박스가 휴대폰으로 위장하여 사용자 인터넷을 프록시로 사용한다는 연구 결과.

Some cheap Android TV boxes disguise as phones and use owners' broadband as proxies according to research.

#android#tv box#proxy#malware#internet
요약 보기원문 →
9·security·기타·The Hacker News·2026. 07. 30.

DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware

북한과 연관된 macOS 악성 광고 캠페인이 발견됐다.

A North Korea-linked macOS malvertising campaign has been uncovered.

#macos#malware#crypto#contagious interview
요약 보기원문 →
9·security·기타·GeekNews·2026. 07. 29.

Word 문서를 통해 자가 전파하는 Copilot AI 웜

Copilot AI 웜이 Word 문서를 통해 자가 전파하는 방법을 설명합니다.

Copilot AI worm propagates via Word documents using XPIA techniques.

#copilot#xpia#word#malware
요약 보기원문 →
9·security·기타·The Hacker News·2026. 07. 29.

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

joyfill npm 패키지가 해킹되어 RAT를 배포하는 문제가 발생했습니다.

Compromised joyfill npm packages distribute RAT when imported.

#npm#javascript#rat#malware#dev#popper
요약 보기원문 →
8·security·기타·The Hacker News·2026. 07. 27.

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware

Cruciferra 크립터가 BYOVD와 프로세스 유령화를 통해 윈도우 악성코드를 숨기는 데 사용됨.

Cruciferra crypter is used with BYOVD and process ghosting to hide Windows malware.

#cruciferra#phishing#malware#cybercrime#byovd
요약 보기원문 →
7·security·기타·The Hacker News·2026. 07. 27.

TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments

TELESHIM이 중동 정부를 공격하기 위해 Telegram을 악용하는 사이버 공격이 보고되었다.

TELESHIM abuses Telegram for attacks against Middle Eastern governments.

#malware#telegram#cybersecurity#zscaler#threatlabz
요약 보기원문 →
8·security·분석·The Hacker News·2026. 07. 25.

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

SourTrade라는 악성 광고 작전이 사용자의 브라우저에서 악성 실행 파일을 생성한다.

A malvertising operation named SourTrade makes users' browsers build malware executables.

#windows#malware#runtime#tradingview#solana#luno
요약 보기원문 →
8·security·기타·The Hacker News·2026. 07. 24.

BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery

블루노로프가 줌과 MS 팀을 사칭하여 암호화폐 지갑을 노리는 피싱 키트를 운영하고 있다.

BlueNoroff operates a phishing kit impersonating Zoom and MS Teams to target crypto wallets.

#phishing#malware#bluenoroff#zoom#microsoft teams
요약 보기원문 →
7·security·기타·The Hacker News·2026. 07. 24.

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants

Golden Chickens의 새로운 악성코드 패밀리 4개가 발견됐다.

Golden Chickens malware ecosystem resurfaces with four new malware families.

#golden chickens#malware#tinyegg#choncychicken#malware-as-a-service
요약 보기원문 →