The NetWire remote access trojan had its infrastructure dismantled following an international law enforcement operation that included the participation of the FBI, The Register reports.
Vulnerable Oracle WebLogic servers are being subjected to cryptojacking attacks by the cryptomining operation 8220 Gang using the ScrubCrypt crypter, reports The Hacker News.
The Emotet trojan re-emerged this week after a hiatus, sending malicious emails to infiltrate high-value corporate networks and then try to sell that access to ransomware groups.
Selling your soul to the company store, Xenomorph, Sonicwall, Github, Veeam, TSA, Ring, Aaran Leylan, and More on this episode of the Security Weekly News.
BleepingComputer reports that the Emotet malware operation has been observed by Cofense and Cryptolaemus to have restarted malspam activity after a three-month hiatus.
Suspected Pakistani advanced persistent threat operation Transparent Tribe, also known as APT36, Mythic Leopard, and Operation C-Major, has leveraged trojanized messaging apps MeetUp and MeetsApp to facilitate distribution of the CapraRAT backdoor to Android device users in India and Pakistan, The Hacker News reports.
Thai, Indonesian, and Vietnamese government agencies are being subjected to spear-phishing attacks by the Chinese state-sponsored cyberespionage operation Sharp Panda with the updated Soul malware, according to BleepingComputer.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.