Malware & Threats Bumblebee Malware Loader Resurfaces Following Law Enforcement Takedown New malicious campaign suggests the Bumblebee malware loader might be resurfacing following the May 2024 law enforcement takedown. Ionut ArghireOctober 22, 2024
Malware & Threats ESET Distributor’s Systems Abused to Deliver Wiper Malware ESET has launched an investigation after a product distributor in Israel sent out emails delivering wiper malware. Eduard KovacsOctober 21, 2024
Malware & Threats Microsoft: macOS Vulnerability Potentially Exploited in Adware Attacks The Adload macOS adware potentially exploits a privacy bypass vulnerability resolved in Sequoia 15 last month. Ionut ArghireOctober 18, 2024
Malware & Threats Microsoft Confirms Exploited Zero-Day in Windows Management Console Patch Tuesday: Redmond warns that attackers are rigging Microsoft Saved Console (MSC) files to execute remote code on targeted Windows systems. Ryan NaraineOctober 8, 2024
Malware & Threats Stealthy ‘Perfctl’ Malware Infects Thousands of Linux Servers The perfctl malware has been targeting vulnerabilities and misconfigurations in millions of Linux systems, likely infecting thousands. Ionut ArghireOctober 7, 2024
Malware & Threats Cryptocurrency Wallets Targeted via Python Packages Uploaded to PyPI Multiple Python packages referencing dependencies containing cryptocurrency-stealing code were published to PyPI. Ionut ArghireOctober 2, 2024
Malware & Threats US Transportation and Logistics Firms Targeted With Infostealers, Backdoors A malicious campaign is targeting transportation and logistics organizations in North America with various malware families. Ionut ArghireSeptember 26, 2024
Artificial Intelligence AI-Generated Malware Found in the Wild HP has intercepted an email campaign comprising a standard malware payload delivered by an AI-generated dropper. Kevin TownsendSeptember 24, 2024
Malware & Threats Necro Trojan Infects Google Play Apps With Millions of Downloads The Necro trojan was found in two Android applications in Google Play with a combined downloads count of over 11 million. Ionut ArghireSeptember 23, 2024
Malware & Threats In Other News: Disney Ditches Slack, Binance Malware Warning, Defense Conference Targeted Noteworthy stories that might have slipped under the radar: Disney will stop using Slack following a hack, Binance warns of malware, and US-Taiwan defense... SecurityWeek NewsSeptember 20, 2024
Malware & Threats Noise Storms: Massive Amounts of Spoofed Web Traffic Linked to China GreyNoise has observed millions of spoofed IPs flooding internet providers with web traffic primarily focusing on TCP connections. Ionut ArghireSeptember 20, 2024
Malware & Threats CISA: Oracle Vulnerabilities From ‘Miracle Exploit’ Targeted in Attacks CISA is warning organizations that two Oracle vulnerabilities tracked as CVE-2022-21445 and CVE-2020-14644 are being exploited in the wild. Eduard KovacsSeptember 19, 2024