IoT Security 1.3 Million Android TV Boxes Infected by Vo1d Malware Doctor Web warns of the new Vo1d Android malware infecting roughly 1.3 million TV boxes running older OS versions. Ionut ArghireSeptember 13, 2024
Malware & Threats Iranian Hackers Targeting Iraqi Government: Security Firm Hackers believed to be operating on behalf of the Iranian government have deployed malware to Iraqi government networks. Eduard KovacsSeptember 12, 2024
Malware & Threats Iranian Hackers Use New Tickler Malware for Intelligence Gathering on Critical Infrastructure The Iran-linked state-sponsored hacker group tracked as Peach Sandstorm has started using a new backdoor in attacks aimed at the US and UAE. Eduard KovacsAugust 29, 2024
Malware & Threats Malware Delivered via Malicious Pidgin Plugin, Signal Fork Threat actors delivered malware via instant messaging applications, including a malicious Pidgin plugin and an unofficial Signal fork. Eduard KovacsAugust 28, 2024
Cybercrime US Offering $2.5 Million Reward for Belarusian Malware Distributor The US government is offering a $2.5 million reward for information leading to the arrest of malware distributor Volodymyr Kadariya. Ionut ArghireAugust 28, 2024
Malware & Threats Cloudflare Tunnels Abused for Malware Delivery Threat actors are abusing Cloudflare’s TryCloudflare feature to create one-time tunnels for the distribution of remote access trojans. Ionut ArghireAugust 2, 2024
Malware & Threats BingoMod Android RAT Wipes Devices After Stealing Money The BingoMod Android trojan steals user information and communication and allows attackers to steal money via account takeover. Ionut ArghireAugust 1, 2024
Malware & Threats Network of 3,000 GitHub Accounts Used for Malware Distribution Stargazer Goblin has created a network of over 3,000 GitHub accounts to distribute malware through phishing repositories. Ionut ArghireJuly 25, 2024
Malware & Threats Telegram Zero-Day Enabled Malware Delivery The EvilVideo zero-day vulnerability in Telegram for Android allowed threat actors to send malicious files disguised as videos. Ionut ArghireJuly 23, 2024
Malware & Threats CrowdStrike Incident Leveraged for Malware Delivery, Phishing, Scams The major IT outage caused by CrowdStrike is being leveraged by threat actors for phishing, scams, and malware delivery. Eduard KovacsJuly 22, 2024
Malware & Threats Ukrainian Sentenced to Prison in US for Role in Zeus, IcedID Malware Operations Vyacheslav Igorevich Penchukov was sentenced to nine years in prison for his role in the Zeus and IcedID malware operations. Ionut ArghireJuly 15, 2024
Malware & Threats P2Pinfect Worm Now Dropping Ransomware on Redis Servers The P2Pinfect worm targeting Redis servers has been updated with ransomware and cryptocurrency mining payloads. Ionut ArghireJune 26, 2024
Malware & Threats Cyber Assault on Asian Telecoms Traced to Chinese State Hackers A years-long espionage campaign has targeted telecoms companies in Asia with tools associated with Chinese groups. Ionut ArghireJune 20, 2024
Malware & Threats Highly Evasive SquidLoader Malware Targets China A threat actor targeting Chinese-speaking victims has been using the SquidLoader malware loader in recent attacks. Ionut ArghireJune 20, 2024
Malware & Threats New BadSpace Backdoor Deployed in Drive-By Attacks The BadSpace backdoor is being distributed via drive-by attacks involving infected websites and JavaScript downloaders. Ionut ArghireJune 18, 2024
Malware & Threats Researchers Show How Malware Could Steal Windows Recall Data Cybersecurity researchers are demonstrating how malware could steal data collected by the new Windows Recall feature. Eduard KovacsJune 5, 2024
Malware & Threats TrickBot and Other Malware Droppers Disrupted by Law Enforcement The TrickBot botnet and other malware droppers have been targeted by international law enforcement in Operation Endgame. Ionut ArghireMay 30, 2024
Malware & Threats New ‘Antidot’ Android Trojan Allows Cybercriminals to Hack Devices, Steal Data The Antidot Android banking trojan snoops on users and steals their credentials, contacts, and SMS messages. Ionut ArghireMay 17, 2024
Malware & Threats 400,000 Linux Servers Hit by Ebury Botnet The Ebury Linux botnet has ensnared over 400,000 Linux systems in 15 years, with roughly 100,000 still infected. Ionut ArghireMay 15, 2024
Malware & Threats Attackers Use DNS Tunneling to Track Victim Activity, Scan Networks Threat actors are using DNS tunneling to track victims’ interaction with spam and to scan network infrastructures. Ionut ArghireMay 14, 2024