Western European IT and software development firms have been compromised with the GPUGate malware as part of a sophisticated attack campaign involving Google Ads and bogus GitHub commits that has been underway since December, reports The Hacker News.
LunaLock targeted the website Artists&Clients, demanding a $50,000 ransom from victims under the threat of leaking stolen data and incorporating it into AI training datasets.
Threat actor TAG-150 has advanced its CastleLoader malware operations with the development of a pair of CastleRAT trojan variants enabling system data exfiltration, command execution, and further payload deployment, The Hacker News reports.
GBHackers News reports that the XWorm remote access trojan has become even stealthier with its utilization of seemingly legitimate filenames resembling apps in a recent attack campaign.
More cybercriminals have been utilizing the Vidar information stealer in attacks this year due to the malware's low barrier of entry, SiliconANGLE reports.