The attack utilizes a fake extension disguised as a legitimate tool for the R programming language, named "reditorsupporter.r-vscode-2.8.8-universal" to mimic a popular extension.
Threat actors could exploit Android's LSPosed framework to alter system-level processes, including the runtime environment, and covertly compromise mobile payment apps, according to Infosecurity Magazine.
Security researchers have discovered two previously undocumented malware strains targeting Linux-based network devices, confirming that financially motivated actors are now exploiting the same vulnerabilities once associated with nation-state espionage, reports Cyber Security News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.