Using Paybis as a Crypto On-Ramp in 2026: Fees, Wallets and Checks
2026-09-22T08:51:35Z•d762940aa06f08318b30902356af3ee7eeef4d4457d35fa332d2f07d32cef6e5
ChainScriptChina-linked threat actorClickFixClopFamousSparrowLatin AmericaMicrosoft TeamsNode.js RATPolygon smart contractsShinyHuntersSparroWockySpotifyZoombackdoorcommand and controlfake installersfile exfiltrationgovernment targetingleak-site compromiseransomwarescreenshot capturesecurity evasion
What happened
HackRead RSS items include two significant cybersecurity reports: FamousSparrow reportedly deployed the SparroWocky C++ backdoor against Latin American government targets, with file exfiltration, screenshot capture, and security-tool evasion capabilities; and ClickFix campaigns distributed the ChainScript Node.js RAT through fake Spotify, Zoom, and Teams installers, using Polygon smart contracts to identify command-and-control infrastructure. Additional reporting covers ransomware-group disputes and leak-site compromise involving Clop and ShinyHunters. No specific CVE identifiers are provided.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- d762940aa06f08318b30902356af3ee7eeef4d4457d35fa332d2f07d32cef6e5
- Enrichment time
- 2026-09-22T08:51:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.