Microsoft has disclosed details of a Windows-based cryptocurrency clipper campaign that has targeted users since February 2026.

“The clipper in this campaign relies on Windows Script Host and ActiveX-driven logic to launch a bundled Tor proxy and poll a hidden-service C2 [command-and-control] server,” the Microsoft Defender Security Research Team said in an analysis published Tuesday. “It…

Read the rest of the story at Read More

Source: The Hacker News

Related posts

Leave a Comment