Malware
Phorpiex
- First Reported
- May 21, 2026
- Latest Reported
- May 21, 2026
Reported Context (1)
- Over the observation period, Hunt.io tracking surfaced Phorpiex (Twizt) botnet C2 server at 94.252.245[.]193 hosted on Syrian Telecom infrastructure, operating a hybrid C2 architecture combining HTTP endpoints with a Hunt.io Report Maps 1,357 C2 Servers Across 98 Middle Eastern Providers
CVE (1)
Malware (16)
Threat Actors (8)
MITRE ATT&CK (9)
Vendors (21)
Products (8)
Tools (8)
Industries (5)
Countries (16)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.