Internet Connectz
  • Home
  • Trump Connectz
  • Latest News
  • Internet Shop
  • Cart
  • Check Out
  • Trenden Music
  • DIY Connectz
  • Environment Connectz
  • Food Connectz
  • Gaming Connectz
  • Gavin Newsom Connectz
  • Health Connectz
  • Internet Connectz
  • News Connectz
  • Politic Connectz
  • Ron Desantis Connectz
  • Sport Connectz
  • Technology Connectz
  • Travel Connectz
  • Trump Connectz
  • World News Connectz
Technology Connectz

Russian APT abuses Windows Hyper-V for persistence and malware execution

11/05/2025 internetconnectz.com No comments yet
Summarize this post with AI
ChatGPT Gemini Claude Perplexity Copilot

The attackers then used the Import-VM and Start-VM PowerShell cmdlets to import the virtual machine into Hyper-V and start it with the name WSL — a deception tactic given that WSL on Windows stands for Windows Subsystem for Linux, another feature that allows running Linux containers under the Windows kernel. More popular than Hyper-V for virtualization on Windows, WSL is widely used by developers, making its presence less likely to receive scrutiny.

The Alpine Linux VM is very small and hosts only two custom implants that Bitdefender has dubbed CurlyShell and CurlCat. They are both built using libcurl, an open-source network transfer library that supports a large variety of protocols.

CurlyShell uses libcurl to connect to a command-and-control (C2) server and set up a reverse shell, meaning it listens for commands issued by the server, passes them to the Linux command line, and returns the output. Meanwhile, CurlCat acts as a proxy for tunneling SSH traffic as HTTP requests, making that traffic harder to detect by network monitoring tools.

Source link

Post Views: 52
  • technology connectz

Post navigation

Previous
Next

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related posts

Technology Connectz

PC Early Access & Game Roadmap – Ubisoft

04/29/2026 internetconnectz.com No comments yet

Agents, the fight continues on a new platform! Beyond iOS and Android, Tom Clancy’s The Division Resurgence is now available to everyone in Early Access on PC via Ubisoft Connect, with a full PC launch planned later this year. Source link

internet connectz
Technology Connectz

9 News – The new technology would then allow the hydrogen…

04/28/2026 internetconnectz.com No comments yet
internet connectz
Technology Connectz

https://www.youtube.com/watch%3Fv%3DVlmC2RxJeTY

04/28/2026 internetconnectz.com No comments yet

Our systems have detected unusual traffic from your computer network. Please try your request again later. This page appears when Google automatically detects requests coming from your computer network which appear to be in violation of the Terms of Service. The block will expire shortly after those requests stop. This traffic may have been sent […]

© Internet connecz. All rights reserved.

We use cookies to ensure you get the best experience on our website.