activity

AppWizard
April 14, 2026
Mirax is a remote access Trojan (RAT) targeting Android devices in Spanish-speaking countries, identified by Outpost24's KrakenLabs in early March. It propagates fraudulent advertisements on Meta-owned applications, allowing cybercriminals to gain initial access. Mirax can interact with compromised devices in real time, converting them into residential proxy nodes through ads on platforms like Facebook and Instagram. It uses SOCKS5 protocol and Yamux multiplexing to establish proxy channels and uncover victims' IP addresses. The malware captures keystrokes, steals sensitive data, executes commands, and monitors user activity. It employs overlay pages to steal credentials and orchestrates distribution through Meta ads and GitHub for malicious APK files. Users are tricked into enabling installations from "unknown sources," and the malware disguises itself behind video playback features. Additionally, a threat actor has been offering Mirax as a malware-as-a-service (MaaS) on illicit forums, with subscription prices starting at ,500 for three months. This service is described as highly controlled and exclusive, primarily targeting Russian-speaking actors in underground communities.
Winsage
April 14, 2026
Cybercriminals are using sophisticated tactics to deceive users, particularly with a counterfeit website posing as a legitimate Windows 11 update. This site operates under the domain microsoft-update[.]support and is designed to trick individuals into downloading malware that compromises sensitive information. The site is written in French and mimics a genuine cumulative update for Windows 11, version 24H2, featuring a convincing KB article number and a blue download button. The malware is packaged as a Windows update using the WiX Toolset 4.0.0.5512 and is labeled "WindowsUpdate 1.0.0.msi," with properties that suggest it is from Microsoft. At the time of analysis, VirusTotal showed no detections for the malware, which conceals its harmful code within an Electron shell, making it difficult to identify. Users are advised to download updates directly through the Windows Settings app or from Microsoft's official support hub.
Tech Optimizer
April 14, 2026
Norton, owned by Gen Digital, provides antivirus software, VPN services, and identity theft monitoring to protect users from cyber threats such as malware and phishing attacks. The company emphasizes subscription-based revenue through Norton 360, which bundles various security features, ensuring predictable cash flow. Norton competes with other antivirus brands like McAfee and Bitdefender, maintaining a strong market share in North America due to its established brand trust. The demand for cybersecurity tools is driven by rising cyber threats, including ransomware attacks and increased remote work, which necessitate robust online protection. Gen Digital is investing in AI-driven threat detection and expanding its offerings to address evolving security needs. However, Norton faces challenges from free alternatives, potential privacy concerns, and macroeconomic pressures that could affect consumer spending on security products.
Winsage
April 13, 2026
A slow computer does not always indicate outdated hardware; simple adjustments can enhance performance without upgrading. Key tips include: - Restarting the computer to clear temporary files and finalize updates. - Disabling unnecessary startup applications to improve boot time. - Limiting background apps to conserve memory and processing power. - Switching to a "High Performance" power plan when plugged in to enhance responsiveness. - Setting "Active Hours" to manage intrusive Windows updates. - Disabling visual effects to reduce the burden on graphics hardware. - Enabling "Storage Sense" to automatically manage and delete unnecessary files.
Tech Optimizer
April 11, 2026
Windows 11 includes Microsoft Defender Antivirus, which is active from the moment the device is powered on and integrated into the operating system. It continuously updates to protect against various threats, including malicious files and unsafe links. Microsoft Defender SmartScreen evaluates the safety of websites and downloads, providing warnings for dubious content. Smart App Control prevents untrusted applications from executing, while Controlled folder access protects personal files from unauthorized modifications. Users can verify the operational status of Microsoft Defender Antivirus through Windows Security settings. Best practices for maintaining security include keeping the antivirus updated, using a single real-time antivirus engine, and enhancing security habits. Microsoft Defender Antivirus is generally sufficient for everyday risks, but additional third-party antivirus solutions may be considered based on individual needs.
AppWizard
April 10, 2026
Recent research by RKS Global found that 22 out of the top 30 Android apps in Russia monitor users' VPN status. Banking apps like T-Bank, Sberbank, VTB, and Alfa-Bank are leading this trend, along with Yandex and VK applications such as Yandex Browser and VKontakte. Online marketplaces including Wildberries, Ozon, MegaMarket, and Samokat also track VPN usage. In total, 18 of the 30 apps transmit VPN status data to their servers, while 24 send lists of installed applications. Yandex Browser uniquely searches for the Tor browser, and Samokat and MegaMarket retrieve lists of installed VPN apps. The Russian Digital Development Ministry has mandated that major internet platforms restrict access for users with VPNs by April 15.
AppWizard
April 9, 2026
Russia is developing the messaging app Max into a multifunctional "super app" inspired by Chinese platforms like WeChat and Douyin. The transformation aims to integrate messaging, payments, e-commerce, digital services, and content consumption into a single platform. The initiative is supported by the Russian government to enhance digital sovereignty and reduce reliance on foreign apps. Key features include a unified platform for services, payment systems, support for businesses, and content-driven commerce. However, Max faces challenges from established competitors, privacy concerns, and the need for a robust ecosystem. The success of Max could position it as a central hub for digital activity in Russia.
Winsage
April 9, 2026
Many newer PCs support a feature called Modern Standby, which allows minimal background processes to continue running during sleep mode, leading to quicker wake-up times but potentially less efficient battery preservation. PCs can operate in one of six states, with S0 indicating full operation and S5 indicating a complete shutdown. Modern Standby (S0 Low Power Idle) turns off the display and most core components while allowing limited background activity, which may vary in effectiveness for battery drain. Traditional Sleep (S3) shuts down the screen and main components but may take longer to resume. Hibernate (S4) saves the current session and powers off completely, while Restart clears memory and resets the operating system. Shut Down (S5) clears memory and terminates processes, using a "soft off" method that retains certain settings for quicker startups through fast boot. Disabling fast boot can be done via the Control Panel. Although Modern Standby can conserve battery, it may not always be effective, as issues with firmware or drivers can prevent the computer from entering a true low-power state. For maximum battery efficiency, using the Shut Down option is recommended, especially with fast boot enabled for quick startups.
Search