ChocoPoC RAT Targets Security Researchers via Fake GitHub Po
🟠High | Source: The Hacker News A new remote access trojan called ChocoPoC is being distributed through fake proof-of-concept exploit repositories on GitHub, specifically targeting vulnerability researchers and bug hunters. When executed, the malware silently steals saved passwords, browser cookies, and files, whilst granting the attacker a persistent shell on the victim’s machine. The campaign is notable because it weaponises the trusted practice of sharing PoC code, turning researchers’ own workflows against them. ...