Hackread reports that Windows devices have been subjected to intrusions deploying an updated iteration of the Neptune RAT malware, which is being touted on GitHub, YouTube, and Telegram as the "most advanced RAT" yet, to facilitate password theft and further malware compromise.Aside from including a password grabber tool targeting browser- and app-stored credentials and manipulating targeted devices' clipboards, the new Neptune RAT variant has also been integrated with file encryption, ransom note injection, and system component corruption capabilities, according to an analysis from CYFIRMA. Operators have also improved Neptune RAT to include virtual environment checking and registry value modification features for persistence, as well as other modules that allow user account control evasion, email and browser app data exfiltration, and live screen monitoring. Such findings highlighting Neptune RAT's increasing sophistication should prompt organizations to implement not only robust endpoint security but also proactive threat monitoring and detection techniques, said Black Duck Principal Security Consultant Satish Swagram.
Cybernews reports that Caritas Internationalis, the Catholic Church's official charity organization, had at least 17 websites of its Spanish arm compromised as part of a web skimmer campaign that commenced in February 2024.
Israel subjected to persistent targeting by Iranian hackers The Hacker News reports that Iran-linked threat operations have continued launching malware attacks against Israel last year.
Security researchers have detailed the evolving tactics of the Russian-affiliated threat group Gamaredon, particularly its use of the PteroLNK variant within the Pterodo malware family, GBHackers reports.
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news