Sunday, April 27, 2025
HomeComputer SecurityMost Popular Malware & Hacking Tools that are Advertised in Underground Hacking...

Most Popular Malware & Hacking Tools that are Advertised in Underground Hacking Forums

Published on

SIEM as a Service

Follow Us on Google News

The Underground hacking Forums are the market place for cybercriminals to advertise various malware variants and other hacking tools. A new report represents the top malware families advertised.

By analyzing more than 3.9 million posts, Recorded Future’s, Insikt Group identified the top malware variants that are advertised in the hacking and it’s a correlation with real-world attacks.

The majority of the malware’s are in multiple languages that includes openly available dual-use tools, open-source malware, or cracked malware and some of the malware families are three years old.

- Advertisement - Google News

Insikt Group also learned that Underground hacking Forums in different languages such as English- and Chinese-speaking and focus on different malware, malware categories, and attack vectors.

Top 10 Malware Advertised in Underground hacking Forums

The top 10 malware categories include dual-use tools such as MinerGate and Imminent Monitor, open-source malware that includes njRat, AhMyth, Mirai and over three years old malware Gh0st RAT.

According to the report the Chinese- and English-speaking underground focus more on the Android devices. Following are the most discussed Android Trojan in Chinese forums that includes SpyNote, AhMyth, and DroidJack, in English speaking forums SpyNote and DroidJack.

Underground hacking Forums

The NJRat is popular among English speaking forums, which is known for its stealthy functions. It uses to run silently in the background and also capable of disabling Antivirus programs and other Windows security features.

Underground hacking Forums

Insikt Group also determines the top malware categories that are mentioned from May 2018 to May 2019, the top categories are the ransomware, crypter, trojan, and web shells.

Underground hacking Forums

“Out of the top 150 strains of malware collected, only 11 were ransomware, approximately 50% of the mentions lower-level ransomware that do not have names or branding.”

Following are the top 10 malware mentions that include remote-access trojans, information stealers, brute force and forum specific tools.

Top malware and their delivery mechanism

Top malware hashes

“The malware vendors also post comments on the original sales thread or create new sales threads to provide updates to the variants to get higher post-exposure within the forum to attract additional buyers.”

Organizations are recommended to prioritize patching for security vulnerabilities and to implement proper defense mechanisms and security procedures.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity course online to keep yourself updated.

FBI-affiliated Websites Hacked – Hackers Steals Agents Personal data From Websites and Published Online

Two Hackers of Bayrob Malware Gang Convicted for Infecting more than 400,000 Computers Worldwide

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

How To Use Digital Forensics To Strengthen Your Organization’s Cybersecurity Posture

Digital forensics has become a cornerstone of modern cybersecurity strategies, moving beyond its traditional...

Building A Strong Compliance Framework: A CISO’s Guide To Meeting Regulatory Requirements

In the current digital landscape, Chief Information Security Officers (CISOs) are under mounting pressure...

Two Systemic Jailbreaks Uncovered, Exposing Widespread Vulnerabilities in Generative AI Models

Two significant security vulnerabilities in generative AI systems have been discovered, allowing attackers to...

New AI-Generated ‘TikDocs’ Exploits Trust in the Medical Profession to Drive Sales

AI-generated medical scams across TikTok and Instagram, where deepfake avatars pose as healthcare professionals...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

How To Use Digital Forensics To Strengthen Your Organization’s Cybersecurity Posture

Digital forensics has become a cornerstone of modern cybersecurity strategies, moving beyond its traditional...

Building A Strong Compliance Framework: A CISO’s Guide To Meeting Regulatory Requirements

In the current digital landscape, Chief Information Security Officers (CISOs) are under mounting pressure...

Two Systemic Jailbreaks Uncovered, Exposing Widespread Vulnerabilities in Generative AI Models

Two significant security vulnerabilities in generative AI systems have been discovered, allowing attackers to...