Home / Jul 02, 2026 / Story
0
#10 BleepingComputer general July 01, 2026 at 20:08 UTC

New ChocoPoC malware targets researchers via trojanized PoC exploits

By Bill Toulas

AI Summary

Multiple trojanized proof-of-concept exploit repositories on GitHub were found delivering ChocoPoC, a Python-based RAT capable of executing commands and stealing sensitive data, in a campaign believed to specifically target cybersecurity researchers. The supply chain attack vector via weaponized PoC code on GitHub is a recurring threat against the security research community, echoing prior North Korean DPRK-linked campaigns.

Relevance score: 78.0/100

# More from July 02