
Silver Fox-linked hackers are using counterfeit software installers to break into Windows systems and weaken the protections meant to stop them. The campaign relies on convincing download pages that copy well-known software brands and offer a seemingly legitimate file.
The operation has affected healthcare, manufacturing, gaming, technology, logistics, government, and education organizations. Most observed victims were linked to China-based operations or Chinese-speaking users, but the lure can cross industry boundaries. Microsoft analysts identified the activity as consistent, with moderate confidence, with the publicly reported Silver Fox, also known as Yinhu, fake-software campaign.
It has not attributed the activity to a nation-state actor, but said the malware establishes a foothold, lowers defenses, and contacts attacker-controlled servers. Campaign attack chain (Source – Microsoft) Microsoft said in a report shared with Cyber Security News (CSN). The report underlines a simple risk: a routine-looking download from a cloned vendor page can become a full endpoint…
➪ Continue reading the full article on cybersecuritynews.com









