New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos

Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in Python proof-of-concept (PoC) repositories on GitHub that claim to exploit hot new CVEs.

Run one, and it quietly lifts your saved passwords, browser cookies, and files, then hands the attacker a shell on your machine. YesWeHack and

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Girls Just Wanna Have Fast MPMC Queues with Bounded Waiting

Girls Just Wanna Have Fast MPMC Queues with Bounded Waiting Source: Hacker News

Linux on the Atari Jaguar

Linux on the Atari Jaguar Source: Hacker News

How Organizations Use AI: Evidence from ChatGPT [pdf]

How Organizations Use AI: Evidence from ChatGPT [pdf] Source: Hacker News