A malware operator left its delivery server wide open, and
Rapid7 pulled down the whole toolkit: 1,048 files spanning lure
templates, filename-spoofing tests, execution experiments,
droppers, builder notes, and two campaign chains. One was already
live against Windows users in Mexico, delivering an infostealer
through a fake government ID-lookup site over WebDAV. What makes it
more than a
Read more https://thehackernews.com/2026/07/exposed-server-reveals-ai-assisted.html

