Hackread reports that threat actors have exploited unsecured Docker APIs to facilitate the distribution of new malware that prevents external API access while deploying system control tools, marking an evolution from an earlier attack campaign discovered by Trend Micro that exploited such APIs for cryptocurrency mining malware delivery.
The Luno botnet, identified by Cyble Research and Intelligence Labs, demonstrates advanced features such as process masquerading, self-update systems, and robust obfuscation techniques.
Threat actors have been looking to covertly take over Windows systems in a new phishing campaign involving the novel MostereRAT trojan, Infosecurity Magazine reports.
Western European IT and software development firms have been compromised with the GPUGate malware as part of a sophisticated attack campaign involving Google Ads and bogus GitHub commits that has been underway since December, reports The Hacker News.
LunaLock targeted the website Artists&Clients, demanding a $50,000 ransom from victims under the threat of leaking stolen data and incorporating it into AI training datasets.
Threat actor TAG-150 has advanced its CastleLoader malware operations with the development of a pair of CastleRAT trojan variants enabling system data exfiltration, command execution, and further payload deployment, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.