00MalwareNo CVEHighPublic
beacon.exe: custom Go C2 found in the wild
Found beacon.exe in the wild. The filename begged for Sliver. The pclntab and the C2 URLs said otherwise: a privately built Go implant with HTTPS plus framed TCP, AES-256-GCM, and a full post-ex menu. Not Sliver. Not Cobalt. Not stock Adaptix.
19 Aug 2026n/a (private C2; callback on PEG TECH / AROSSCLOUD)
Read analysis→