Rogue npm Packages Mimic Telegram Bot API to Plant SSH Backdoors on Linux Systems – Go Health Pro

Rogue npm Packages Mimic Telegram Bot API to Plant SSH Backdoors on Linux Systems – Go Health Pro

Apr 19, 2025Ravie LakshmananLinux / Malware Cybersecurity researchers have uncovered three malicious packages in the npm registry that masquerade as a popular Telegram bot library but harbor SSH backdoors and data exfiltration capabilities. The packages in question are listed below – According to supply chain security firm Socket, the packages are designed to mimic node-telegram-bot-api, … Read more

Neptune RAT spreads across GitHub, Telegram, and YouTube – Go Health Pro

Neptune RAT spreads across GitHub, Telegram, and YouTube – Go Health Pro

A new version of Neptune RAT written in Visual Basic.NET is spreading rapidly across many platforms, most notably GitHub, Telegram, and YouTube.CYFIRMA researchers said the creator of the remote access trojan (RAT) made the software available without the source code, intentionally obfuscating the executable files to make analysis more challenging.According to an April 7 post, … Read more

FireScam Android malware poses as Telegram app to steal sensitive data – Go Health Pro

FireScam Android malware poses as Telegram app to steal sensitive data – Go Health Pro

An Android infostealer malware called FireScam disguised as a fake Telegram Premium app was discovered being distributed through a GitHub.io phishing site that impersonates the RuStore, a popular app store used in Russia. Cyfirma researchers explained Dec. 30 that the FireScam malware looks to exfiltrate sensitive Android data, including notifications, messages, and other app data, … Read more

Telegram to delete deepfakes targeting South Koreans – Go Health Pro

Telegram to delete deepfakes targeting South Koreans – Go Health Pro

Telegram has vowed to delete sexually explicit deepfake content targeting Korean people as the Dubai-based messaging company moves to bolster cooperation with the South Korean government. Speaking to The Korea Times recently, Telegram spokesperson Remi Vaughn vowed a “zero-tolerance” policy against any illegal content and said it would join the Korean government’s efforts to protect … Read more

GitHub, Telegram Bots, and ASCII QR Codes Abused in New Wave of Phishing Attacks – Go Health Pro

GitHub, Telegram Bots, and ASCII QR Codes Abused in New Wave of Phishing Attacks – Go Health Pro

A new tax-themed malware campaign targeting insurance and finance sectors has been observed leveraging GitHub links in phishing email messages as a way to bypass security measures and deliver Remcos RAT, indicating that the method is gaining traction among threat actors. “In this campaign, legitimate repositories such as the open-source tax filing software, UsTaxes, HMRC, … Read more