CyberSecurity News
GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address
AI summary
Threat actors believed to be linked to Dark Caracal deployed a new malware framework called GoCaracal during an intrusion at a Venezuelan communications organization. The GoCaracal malware provides remote shell access and allows for payload execution. It also has an extended profile that enables additional capabilities, including stealing browser data, keylogging, and controlling remote desktops. The malware was used in an incident that occurred in June 2026. GoCaracal is a previously undocumented framework written in Go.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

