Cloudflare Tunnels Abused: Malware Havoc Hits Finance, Tech, and Manufacturing
Proofpoint reveals cybercriminals are abusing TryCloudflare tunnels to deliver malware, complicating traditional security measures and targeting sectors like finance and technology.

Hot Take:
Who knew that TryCloudflare Tunnels could be the Swiss Army knife for cybercriminals? It’s like they found a cheat code in a video game but for malware delivery. Time to patch up those digital windows!
Key Points:
- Cybercriminals are abusing TryCloudflare Tunnels for malware delivery.
- Primary payloads include XWorm, AsyncRAT, VenomRAT, GuLoader, and Remcos.
- Attacks involve messages with URLs or attachments leading to internet shortcut files.
- Over 1,500 messages targeted multiple sectors including finance, manufacturing, and technology.
- Proofpoint suggests restricting Python usage and securing against external file-sharing services to mitigate risks.
Already a member? Log in here