Chromium abused for C2 and evasion
- Researchers flagged attackers abusing Chromium browser processes to host command‑and‑control channels and evade RMM detection by piggybacking on legitimate binaries. - More than 30 new YARA rules were published to detect this living‑off‑the‑land technique and associated malicious child processes. - Security teams are advised to hunt for anomalous browser child processes and suspicious network callbacks. (x.com)