Fake student resumes target researchers with SNOWLIGHT and VShell malware, disguising a remote-access attack as a graduate ...
Gen Threat Labs has uncovered WordlistLoader, a new malware loader used in ClearFake campaigns to deliver the Amatera Stealer ...
The malware was discovered in July 2026 and is likely used by a ransomware-related threat actor to gain an initial foothold, perform reconnaissance, move laterally, and deploy additional payloads.