As cited
Copy frozen at (site build).
threat intel
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2
Zscaler ThreatLabz identified C2Looper, a new Rust-based backdoor malware likely used by ransomware threat actors, in July 2026. The malware supports remote command execution, reconnaissance, and payload deployment, with a newer version using GitHub for command-and-control communications. C2Looper appears to be under active development and may be delivered via ClickFix infection chains.
Why it matters: Organizations need to monitor for C2Looper indicators of compromise and ClickFix campaigns, as the malware establishes footholds for lateral movement and ransomware deployment in targeted networks.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2
Zscaler ThreatLabz identified C2Looper, a new Rust-based backdoor malware likely used by ransomware threat actors, in July 2026. The malware supports remote command execution, reconnaissance, and payload deployment, with a newer version using GitHub for command-and-control communications. C2Looper appears to be under active development and may be delivered via ClickFix infection chains.
Why it matters: Organizations need to monitor for C2Looper indicators of compromise and ClickFix campaigns, as the malware establishes footholds for lateral movement and ransomware deployment in targeted networks.
- Source published
- First seen by Cybersecurity Tracker