Multiplayer first-person shooter game Enlisted had its Russian-speaking players targeted by a phishing campaign distributing ransomware mimicking the WannaCry strain, reports The Record, a news site by cybersecurity firm Recorded Future.
BleepingComputer reports that WhatsApp backup files are being exfiltrated by the updated Android GravityRAT spyware distributed in a malware campaign that has been ongoing since last August.
Modifications to backend IP infrastructure have been recently conducted by Vidar malware operators to further conceal malicious activity, The Hacker News reports.
The Hacker News reports that exploitation of a critical security vulnerability in the WooCommerce Stripe Gateway plugin, which is used to permit various payment methods in WordPress-based e-commerce sites, could prompt sensitive data exposure.
Malicious websites hosting pirated movies, music, or video games have been leveraged to distribute the new variant of the ChromeLoader browser hijacker dubbed "Shampoo" since March, BleepingComputer reports.
Windows systems in the U.S., Europe, and Southeast Asia had sensitive data exfiltrated in attacks with the novel Go-based Skuld information-stealing malware, which was similar to the BlackCap Grabber, Luna Grabber, and Creal Stealer backdoors, reports The Hacker News.
“Several” government agencies fell victim to attackers exploiting a vulnerability in the MOVEit Transfer file transfer application that has plagued the cybersecurity community since its disclosure.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.