The Hacker News: post #9904 — TG.ME

🚨 Spark RAT targets Cambodia using a vulnerable driver to kill security processes.

The campaign abuses CVE-2026-36425 in an OPSWAT driver to terminate processes tied to Microsoft Defender, Huorong, and Tencent PC Manager before deploying the RAT.

How the attack chain works: https://thehackernews.com/2026/08/spark-rat-targets-cambodia-abuses.html
🔥12😁1
August 27, 2026 6.3K 62