Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2

Read full story on The Hacker News
Share
Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2
AI disclosure

Summary

Microsoft has disclosed details of a Windows-based cryptocurrency clipper campaign that has targeted users since February 2026. "The clipper in this campaign relies on Windows Script Host and ActiveX-driven logic to launch a bundled Tor proxy and poll a hidden-service C2 [command-and-control] server," the Microsoft Defender Security Research Team said in an analysis published Tuesday. "It

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.