logo

Italian spyware vendor linked to Chrome zero-day attacks

ID: 42410006-ace6-50c4-b16a-af567b20299e

STIX ID: report--42410006-ace6-50c4-b16a-af567b20299e

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2025-10-27

Date Updated: 2026-07-18

Author: Bill Toulas

...
...

Kaspersky uncovered Operation ForumTroll, a targeted phishing campaign that used personalized invites to lure Russian and Belarusian organizations to a malicious Chromium-based link which exploited a Chrome sandbox-escape zero-day (CVE-2025-2783) to install a persistent loader and deliver modular spyware (LeetAgent) and, in some cases, a second-stage commercial spyware (Dante) attributed with high confidence to Memento Labs, a successor to Hacking Team.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.