Angry Birds: Toy Ghouls’ new toys
2026-09-05T20:51:47Z•5f235be287a283c6c437d27c7988025bd5dbf7b96b95835178251f8f0acad0da
AI-securityAPTAndroidC2DNS tunnelingElementGoogle Apps ScriptICSJavaScriptMQTTMatrixNode.jsTelegramTrueConfValleyRATadwarebackdoorcommand-and-controlcyber-espionageindustrial-control-systemskernel-modemalwareproxy-botnetransomwarerootkit
What happened
Kaspersky Securelist RSS content covering recent cyber threats, including Toy Ghouls MQTT and Matrix-based backdoors, Mirage Kitten malware targeting aviation and FinTech, ValleyRAT disguised as adware, industrial control system threats, Android proxy botnet malware, a HoneyMyte kernel-level rootkit, Armored Likho espionage tools, Head Mare exploitation of unpatched TrueConf servers, and Project CAV3RN using Google Apps Script and DNS-based C2. The feed also includes a quarterly review of vulnerabilities, exploits, and C2 frameworks, including AI-related vulnerabilities. No specific CVEs are ت
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- 5f235be287a283c6c437d27c7988025bd5dbf7b96b95835178251f8f0acad0da
- Enrichment time
- 2026-09-05T20:51:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.