Malware & Threats Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices A new Android trojan named Brokewell can steal user’s sensitive information and allows attackers to take over devices. Ionut ArghireApril 26, 2024
Malware & Threats North Korean Hackers Hijack Antivirus Updates for Malware Delivery A North Korea-linked threat actor hijacked the update mechanism of eScan antivirus to deploy backdoors and cryptocurrency miners. Ionut ArghireApril 24, 2024
Malware & Threats Threat Actor Uses Multiple Infostealers in Global Campaign A threat actor tracked as CoralRaider has been using multiple infostealers to harvest credentials from users worldwide. Ionut ArghireApril 24, 2024
Malware & Threats Russian Cyberspies Deliver ‘GooseEgg’ Malware to Government Organizations Russia-linked APT28 deploys the GooseEgg post-exploitation tool against numerous US and European organizations. Ionut ArghireApril 23, 2024
Malware & Threats Threat Actors Manipulate GitHub Search to Deliver Malware Checkmarx warns of a new attack relying on GitHub search manipulation to deliver malicious code. Ionut ArghireApril 12, 2024
Malware & Threats VPN Apps on Google Play Turn Android Devices Into Proxies Human Security identifies 28 VPN applications for Android and an SDK that turn devices into proxies. Ionut ArghireMarch 27, 2024
Malware & Threats Suspicious NuGet Package Harvesting Information From Industrial Systems A suspicious NuGet package likely targets developers working with technology from Chinese firm Bozhon. Ionut ArghireMarch 26, 2024
Malware & Threats Over 100 Organizations Targeted in Recent ‘StrelaStealer’ Attacks More than 100 organizations in the US and EU have been targeted in recent StrelaStealer infostealer campaigns. Ionut ArghireMarch 25, 2024
Malware & Threats Chinese Cyberspies Target Tibetans via Watering Hole, Supply Chain Attacks Chinese APT Evasive Panda compromises a software developer’s supply chain to target Tibetans with malicious downloaders. Ionut ArghireMarch 8, 2024
Malware & Threats Russian Turla Cyberspies Target Polish NGOs With New Backdoor Russian state-sponsored threat actor Turla has been using a new backdoor in recent attacks targeting Polish NGOs. Ionut ArghireFebruary 22, 2024
Malware & Threats Threat Actors Quick to Abuse ‘SSH-Snake’ Worm-Like Tool Threat actors are actively deploying the recently released self-replicating and self-propagating SSH-Snake worm. Ionut ArghireFebruary 22, 2024
Malware & Threats Redis Servers Targeted With New ‘Migo’ Malware Attackers weaken Redis instances to deploy the new Migo malware and install a rootkit and cryptominers. Ionut ArghireFebruary 21, 2024
Malware & Threats Anatsa Android Banking Trojan Continues to Spread via Google Play Recent Anatsa Android banking trojan attacks have become more targeted, showing an evolution in tactics. Ionut ArghireFebruary 20, 2024
Malware & Threats Ukrainian Raccoon Infostealer Operator Extradited to US Alleged Raccoon Infostealer operator Mark Sokolovsky is awaiting trial in the US, after being extradited from the Netherlands. Ionut ArghireFebruary 19, 2024
Cybercrime Ukrainian Pleads Guilty in US to Key Role in Zeus, IcedID Malware Operations Ukrainian national Vyacheslav Igorevich Penchukov has pleaded guilty to holding key roles in the Zeus and IcedID malware operations. Eduard KovacsFebruary 16, 2024
Malware & Threats Elusive Chinese Cyberspy Group Hijacks Software Updates to Deliver Malware The China-linked cyberespionage group Blackwood has been caught delivering malware to entities in China and Japan. Ionut ArghireJanuary 26, 2024
Malware & Threats Information Stealer Exploits Windows SmartScreen Bypass Attackers exploit a recent Windows SmartScreen bypass vulnerability to deploy the Phemedrone information stealer. Ionut ArghireJanuary 15, 2024
Malware & Threats Several Infostealers Using Persistent Cookies to Hijack Google Accounts A vulnerability in Google’s authentication process allows malware to restore cookies and hijack user sessions. Ionut ArghireJanuary 3, 2024
Malware & Threats 21 New Mac Malware Families Emerged in 2023 A total of 21 new malware families targeting macOS systems were discovered in 2023, a 50% increase compared to 2022. Eduard KovacsJanuary 3, 2024
Malware & Threats North Korean Hackers Developing Malware in Dlang Programming Language North Korean hackers have used Dlang-based malware in attacks against manufacturing, agriculture, and physical security organizations. Ionut ArghireDecember 11, 2023