<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Malware - Tag - Trackflaw | Cybersecurity expert</title><link>https://blog.trackflaw.com/en/tags/malware/</link><description>Malware - Tag - Trackflaw | Cybersecurity expert</description><generator>Hugo -- gohugo.io</generator><language>en</language><lastBuildDate>Sat, 05 Sep 2026 10:00:00 +0200</lastBuildDate><atom:link href="https://blog.trackflaw.com/en/tags/malware/" rel="self" type="application/rss+xml"/><item><title>The CCleaner affair: the 2017 supply chain attack explained</title><link>https://blog.trackflaw.com/en/how-to-hack-2-billion-installs-at-once-the-ccleaner-affair/</link><pubDate>Sat, 05 Sep 2026 10:00:00 +0200</pubDate><author>Thibaud Robin</author><guid>https://blog.trackflaw.com/en/how-to-hack-2-billion-installs-at-once-the-ccleaner-affair/</guid><description><![CDATA[<div class="featured-image">
                <img src="/images/comment-pirater-2-milliards-installations-affaire-ccleaner/logo.jpg" referrerpolicy="no-referrer">
            </div>The CCleaner affair: the supply chain attack that backdoored 2.27 million PCs The CCleaner affair is one of the textbook cases of a software supply chain attack. In August 2017, version 5.33 of the most popular cleaning utility in the world was distributed through official channels with a backdoor grafted inside. Signed with the vendor&rsquo;s genuine certificate, the update infected 2,270,000 computers in one month, without a single antivirus reacting.]]></description></item><item><title>OpenClaw: the security risks of the autonomous AI agent</title><link>https://blog.trackflaw.com/en/when-ai-assistants-go-off-the-rails/</link><pubDate>Thu, 16 Apr 2026 10:00:00 +0200</pubDate><author>Thibaud Robin</author><guid>https://blog.trackflaw.com/en/when-ai-assistants-go-off-the-rails/</guid><description>&lt;div class="featured-image">
&lt;img src="/images/quand-les-assistants-ia-deraillent-openclaw/logo.jpg" referrerpolicy="no-referrer">
&lt;/div>OpenClaw: the security risks of the autonomous AI agent OpenClaw is the tech project with the most meteoric popularity in GitHub history: more than 350,000 stars in a few months, a foundation funded by OpenAI, and a seductive promise. Where most AIs are limited to spitting out text in a chat window, OpenClaw acts: it reads your emails, manages your calendar, writes code and runs it directly on your computer.</description></item><item><title>Temu and your data: permissions, Pinduoduo malware and privacy</title><link>https://blog.trackflaw.com/en/temu-s-unspeakable-methods-to-buy-you/</link><pubDate>Sun, 31 Aug 2025 10:00:00 +0200</pubDate><author>Thibaud Robin</author><guid>https://blog.trackflaw.com/en/temu-s-unspeakable-methods-to-buy-you/</guid><description><![CDATA[<div class="featured-image">
                <img src="/images/les-methodes-inavouables-de-temu/logo.jpg" referrerpolicy="no-referrer">
            </div>Temu and your data: permissions, Pinduoduo malware and privacy, the dark side of the app Is Temu dangerous for your data? The question keeps coming back since the meteoric arrival in Europe of the &ldquo;little orange app&rdquo; with unbeatable prices. Officially, Temu is just a marketplace. Unofficially, its parent company has already been caught red-handed exploiting an Android zero-day in a sister app, its early versions requested 29 permissions, and an independent Swiss report flagged two technical anomalies typical of malware.]]></description></item></channel></rss>