Threat actors have been leveraging bogus installers for several artificial intelligence platforms to facilitate compromise with the CyberLock and Lucky_Gh0$t ransomware payloads, as well as the novel Numero malware, The Hacker News reports.
Chinese state-sponsored hacking operation APT41, also known as Winnti, had attack infrastructure deploying the novel ToughProgress malware, which leverages Google Calendar for command-and-control, dismantled by the Google Threat Intelligence Group, BleepingComputer reports.
GBHackers News reports that Android devices are at risk of being completely taken over by the newly emergent GhostSpy malware, which features sophisticated persistence, anti-detection, and surveillance mechanisms.
VenomRAT spread via fake Bitdefender site Threat actors have been leveraging a fraudulent website promoting Bitdefender antivirus software to distribute the VenomRAT remote access trojan as part of a new attack campaign, The Hacker News reports.
Information-stealing malware has been spread through a trio of malicious Python Package Index packages purporting to provide a Python SDK for Alibaba's artificial intelligence services, which have accumulated almost 1,600 downloads prior to their removal from the PyPI repository, reports Infosecurity Magazine.
Widely used web browsers Google Chrome, Microsoft Edge, Mozilla Firefox, and Brave, are having their stored passwords, cookies, and session tokens targeted for exfiltration by the new Katz Stealer malware-as-a-service, according to GBHackers News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.