Kimwolf v7: An Evolution of the Kimwolf Botnet

2026-08-11T20:51:33Z5ebe2c725d141620351aa1a510b526cf3d8301813b3650820d062b2fbc31e270
AI-assisted-attacksAPI-key-theftCI/CDDDoSEthereumGitHub ActionsIoTMFAOTPolygonSiemens-ROX-IIโดยTorXcodeblockchain-C2botnetidentity-attacksindustrial-control-systemsmacOSmalwarenpmpasskeyssecret-theftsoftware-supply-chainthreat-intelligencezero-day

What happened

Unit 42 RSS collection covering malware and botnets, blockchain- and DNS-based command-and-control, npm and CI/CD supply-chain attacks, credential and token theft, passkey implementation weaknesses, macOS developer malware, AI-assisted exploitation, webmail espionage, and OT device zero-days. The collection includes Kimwolf v7, Aeternum, ChainDrop, XCSSET v40, TuxBot v3, and Siemens ROX II vulnerabilities, among other security research topics.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
paloalto_unit42
Record identifier
5ebe2c725d141620351aa1a510b526cf3d8301813b3650820d062b2fbc31e270
Enrichment time
2026-08-11T20:51:33Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.