CryptoBandits malware uses a local SOCKS5 proxy to route traffic through Tor, combining data theft with remote code execution. The malware functions as a backdoor, enabling attackers to steal cryptocurrency and execute commands on infected systems.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
DragonForce Hides C2 Traffic in Microsoft Teams Relays