New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos

Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in Python proof-of-concept (PoC) repositories on GitHub that claim to exploit hot new CVEs.

Run one, and it quietly lifts your saved passwords, browser cookies, and files, then hands the attacker a shell on your machine. YesWeHack and

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation

Next Post

FortiBleed Credential Theft Linked to INC and Lynx Ransomware Operations

Related Posts
Total
0
Share