Cybersecurity analysts have warned of a new malware campaign that disguises itself as a legitimate PDF editor but secretly converts infected devices into residential proxies, Cyber Security News reports.
Nearly 40 new remote commands, including those enabling ransomware-like compromise, have been integrated into the updated version of the Hook Android banking trojan, Infosecurity Magazine reports.
Hacked WordPress sites harnessed in global cybercrime campaign Information-stealing malware, ransomware, and cryptominers have been distributed through more than 100 breached WordPress sites around the world as part of the new ShadowCaptcha cybercrime campaign, which involves ClickFix social engineering and multiple living-off-the-land binaries, reports The Hacker News.
More than 800 financial organizations around the world have been targeted by new attack campaigns involving the latest iteration of the Anatsa Android banking trojan, also known as TeaBot, which is more covert and persistent than before, according to Cyber Security News.
BleepingComputer reports that Indian government and defense organizations have been targeted by Pakistan-linked threat operation APT36, also known as Transparent Tribe, in attacks involving illicit Linux .desktop files as part of a new ongoing malware campaign first discovered at the beginning of the month.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.