logo

Matrix Push C2 abuses browser notifications to deliver phishing and malware

ID: 6db7a35a-e09a-598f-99d2-9794e100fa4d

STIX ID: report--6db7a35a-e09a-598f-99d2-9794e100fa4d

Feed Name: Malwarebytes Blog

Threat Score
65/100

Date Published: 2025-11-24

Date Updated: 2026-04-28

...
...

Researchers have identified a criminal command-and-control platform called Matrix Push C2 that weaponizes browser push notifications to deliver malware and phishing lures, monitor victim interactions in real time via an active clients panel, and use built-in URL shortening to conceal malicious destinations; the report also provides step-by-step guidance for users to find and remove unwanted notification permissions across major browsers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.