App virtualization tool BoxedApp has been increasingly leveraged to facilitate the distribution of malicious payloads while bypassing static analysis during the past year, with threat actors particularly exploiting the tool's virtual storage, virtual processes, and virtual registry features, The Register reports.
Attacks with the Windows version of the Decoy Dog malware have been deployed by the advanced persistent threat operation HellHounds against 48 telecommunications, IT, government, and space industry entities across Russia, reports The Hacker News.
Organizations in the manufacturing, construction, and education sectors across South Korea have been targeted by North Korean state-sponsored advanced persistent threat operation and Lazarus Group sub-cluster Andariel, also known as Silent Chollima, Nickel Hyatt, and Onyx Sleet, in attacks spreading the novel Dora RAT malware with reverse shell and file upload and download support, The Hacker News reports.
Threat actors have been leveraging phony web browser updates to facilitate the distribution of remote access trojans and information-stealing malware, according to The Hacker News.
International law enforcement agencies behind Operation Endgame, which has been touted to be the biggest anti-botnet and dropper malware operation, have called for more information regarding the leader of the Emotet botnet operation dubbed "Odd," who continues to evade arrest despite the botnet being disrupted twice, according to The Register.
More than 600,000 internet routers across several Midwest states have been taken offline by a widespread cyberattack against an unnamed U.S. telecommunications firm last October that involved the distribution of a malicious firmware update, Reuters reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.