BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

New Matrix Push C2 Kit Exploits Browser Notifications for Phishing

Matrix Push C2 operates filelessly through browser push notifications, tricking users into interacting with fake alerts.

  • Malicious actors use browser notifications to conduct phishing attacks via the new Matrix Push C2 platform.
  • The platform is sold as Malware-as-a-service with tiered pricing, accepting cryptocurrency payments.
  • It provides real-time victim tracking, branded phishing templates, and analytics to optimize campaigns.
  • Separately, attacks exploiting the legitimate Velociraptor tool have increased, using it for reconnaissance after gaining access through a Windows Server Update Services vulnerability.

A newly identified command-and-control (C2) platform named Matrix Push C2 has been found to exploit browser-native push notifications to carry out phishing attacks. Discovered in early October 2025, this fileless framework functions across operating systems by sending deceptive alerts that appear as legitimate system or browser notifications. Attackers persuade users to enable notifications on malicious or compromised websites, then use this access to deliver messages prompting victims to click links leading to fraudulent sites, according to a report by Blackfog.

- Advertisement -

The push notification system exploited here is built into modern web browsers, allowing attackers to mimic trusted brands with familiar logos and wording. Examples include alerts about suspicious logins or software updates, each containing interactive buttons like “Verify” or “Update” that redirect victims to phishing pages. This method bypasses traditional security controls by relying entirely on social engineering within the browser, avoiding the need to infect the victim’s device first.

Matrix Push C2 is marketed as malware-as-a-service, with monthly subscription pricing tiers of approximately $150 for one month, $405 for three months, $765 for six months, and $1,500 for a full year, payable via cryptocurrency. The service is accessed through a web-based dashboard that enables operators to send notifications, monitor victim interactions, shorten URLs, and collect data on installed browser extensions, including cryptocurrency wallets. It includes customizable templates themed around well-known brands such as MetaMask, Netflix, Cloudflare, Paypal, and TikTok to enhance credibility, as explained by Blackfog researcher Brenda Robb.

The campaign’s analytics tools allow the attackers to track user engagement and refine their phishing techniques. Following initial access, attackers can escalate their efforts by delivering further phishing attempts, tricking victims into installing persistent malware, or exploiting browser vulnerabilities to gain deeper control. The ultimate objectives often include stealing personal information or draining cryptocurrency wallets.

In a related development, Cybersecurity vendor Huntress reported a marked rise in the abuse of the legitimate digital forensics and incident response tool Velociraptor over the past three months. On November 12, 2025, threat actors exploited a critical Windows Server Update Services vulnerability (CVE-2025-59287, CVSS score 9.8) to deploy Velociraptor for conducting reconnaissance activities such as querying user details and system configurations. The attack was halted before progression, highlighting the trend of malicious use of open-source and commercially available offensive cybersecurity tools. More details about this are available via Huntress.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Bitcoin Plunge To $60K Sparks Fears Of Cascade

Bitcoin's price has plunged to $60,000 as traders brace for Federal Reserve moves and...

New Malware Wave Hits npm, Go Ecosystems

The Mini Shai-Hulud malware campaign has evolved, compromising new npm packages and now spreading...

Barclays Raises Micron Target to $2000 After Stellar Earnings

Barclays sharply raised Micron's (MU) price target from $1,175 to $2,000 following record quarterly...

Schiff to MicroStrategy: Sell Bitcoin to Buy Back Shares

Bitcoin critic Peter Schiff advocates for Strategy to sell Bitcoin and buy back shares...

Robinhood Closes $2.2 Billion Convertible Note Offering

Robinhood has successfully closed a $2.2 billion private offering, consisting of 0% convertible notes...

Must Read

8 Best Crypto Debit Cards For Spending Your Digital Tokens

What are | How we chose | Best crypto debit cards | Binance Card? | FAQ | Final WordsCrypto debit cards have transformed how...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading