[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fFwegk_i_7KRip65mv4w9U_EYO1gPalXDG-ws3D2bu9o":3},{"article":4,"iocs":33,"watch_terms":44},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":12,"published_at":13,"ingested_at":14,"relevance_score":10,"entities":15,"category_id":16,"category":17,"article_tags":20},"82cc4c5b-29d5-4017-86ef-5160a5e9fe4d","Multi-Stage VOID#GEIST Malware Delivering XWorm, AsyncRAT, and Xeno RAT","multi-stage-void-geist-malware-delivering-xworm-asyncrat-and-xeno-rat","Cybersecurity researchers have disclosed details of a multi-stage malware campaign that uses batch scripts as a pathway to deliver various encrypted remote access trojan (RATs) payloads that correspond to XWorm, AsyncRAT, and Xeno RAT. The stealthy attack chain has been codenamed VOID#GEIST by Securonix Threat Research. At a high level, the obfuscated batch script is used to deploy a second","Securonix Threat Research has disclosed a multi-stage malware campaign called VOID#GEIST that uses obfuscated batch scripts to deliver multiple encrypted remote access trojans including XWorm, AsyncRAT, and Xeno RAT. The attack chain employs a stealthy approach utilizing batch scripts as the initial payload delivery mechanism for various RAT variants.",null,"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Fmulti-stage-voidgeist-malware.html","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEjQjK1KC9p7VWWkeFycROhD4cXTkFws06lICtY2bwCh8m2G8vl20VKnurwKZGiqVLWKxZGBRREcIKUImgupySapsKegJcZjxIYuU5nmLtLBABpnxQIC0ShG0uUbiG0jfRH7IgBTj5COyPK090eD7qof5VnsI2gUG43uLkhdy3EqDCVPguAcBp7HSdASnA9Q\u002Fs1600\u002Fkey-malware.jpg","2026-03-06T14:33:00+00:00","2026-03-14T09:41:13.354083+00:00",[],"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5",{"id":16,"icon":10,"name":18,"slug":19},"Malware","malware",[21,23,28],{"category":22},{"id":16,"icon":10,"name":18,"slug":19},{"category":24},{"id":25,"icon":10,"name":26,"slug":27},"c5eccf7c-abbc-4bd3-bbed-e6da5cba8e73","Incident Response","incident-response",{"category":29},{"id":30,"icon":10,"name":31,"slug":32},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[34,37,40,42],{"type":19,"value":35,"context":36},"VOID#GEIST","Multi-stage malware campaign delivering multiple RATs",{"type":19,"value":38,"context":39},"XWorm","Remote access trojan payload delivered by VOID#GEIST",{"type":19,"value":41,"context":39},"AsyncRAT",{"type":19,"value":43,"context":39},"Xeno RAT",[]]