Using Paybis as a Crypto On-Ramp in 2026: Fees, Wallets and Checks

2026-09-22T08:51:35Z•d762940aa06f08318b30902356af3ee7eeef4d4457d35fa332d2f07d32cef6e5
ChainScriptChina-linked threat actorClickFixClopFamousSparrowLatin AmericaMicrosoft TeamsNode.js RATPolygon smart contractsShinyHuntersSparroWockySpotifyZoombackdoorcommand and controlfake installersfile exfiltrationgovernment targetingleak-site compromiseransomwarescreenshot capturesecurity evasion

What happened

HackRead RSS items include two significant cybersecurity reports: FamousSparrow reportedly deployed the SparroWocky C++ backdoor against Latin American government targets, with file exfiltration, screenshot capture, and security-tool evasion capabilities; and ClickFix campaigns distributed the ChainScript Node.js RAT through fake Spotify, Zoom, and Teams installers, using Polygon smart contracts to identify command-and-control infrastructure. Additional reporting covers ransomware-group disputes and leak-site compromise involving Clop and ShinyHunters. No specific CVE identifiers are provided.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
hackread
Record identifier
d762940aa06f08318b30902356af3ee7eeef4d4457d35fa332d2f07d32cef6e5
Enrichment time
2026-09-22T08:51:35Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.