ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions
Today’s signal The Hacker News recently reported ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions. Published context: August 31, 2026. The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under a trusted process to slip past users who add such software to their antivirus exclusions. Russian cybersecurity vendor Kaspersky said the attackers built the disguise around QN Wallpaper, a gen ...