The Gayfemboy botnet, initially identified in February 2024, has been employing advanced tactics, including leveraging N-day and zero-day exploits to compromise devices.
Ex-developer Davis Lu, a Chinese national, was sentenced to four years in prison for deploying kill-switch malware that locked out employees of his Ohio employer after his account was disabled.
Threat actors have been using the novel QuirkyLoader malware loader to spread multiple information-stealing payloads and remote access trojans in email spam campaigns since November, according to The Hacker News.
Financially motivated threat group UNC5518 has harnessed fraudulent CAPTCHA pages to inject the CORNFLAKE.V3 backdoor as part of a ClickFix attack campaign, The Hacker News reports.
The Android.Backdoor.916.origin malware operates as a fake antivirus application, deceiving users into believing it offers security protection while actually spying on them.