News

Hidden VMs: how hackers leverage QEMU to stealthily steal data and spread malware

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-04-18 15:20:06 UTC

Attackers abuse QEMU to hide malware in virtual machines, bypass detection, steal data, and deploy ransomware without leaving any trace. Sophos researchers report a rise in attackers abusing QEMU, an open-source emulator, to hide malicious activity inside vir…

Hidden VMs: how hackers leverage QEMU to stealthily steal data and spread malware Sophos researchers report a rise in attackers abusing QEMU, an open-source emulator, to hide malicious activity insi… [+4974 chars]