A recent analysis by AhnLab Security Intelligence Center highlights a growing cybersecurity threat from infostealer malware posing as cracked software and keygens, which are increasingly distributed through SEO-poisoned sites and legitimate web platforms, reports GBHackers News.
Russian malware-as-a-service operation NyashTeam had over 110 domains disrupted by Russian cybersecurity firm F6 in a takedown effort conducted alongside the Coordination Center for TLD RU, reports The Record, a news site by cybersecurity firm Recorded Future.
AllaKore RAT, SystemBC deployed in Mexico-targeted intrusions Attacks with the AllaKore RAT and SystemBC payloads have been launched by the Greedy Sponge hacking operation against organizations across Mexico since 2021, The Hacker News reports.
Operations of the Lumma information-stealing malware have returned to near-normal levels two months after some of its infrastructure and its domains were taken down by a global law enforcement effort, BleepingComputer reports.
Hackread reports that dozens of financial entities and cryptocurrency exchanges have been targeted with attacks involving a new iteration of the Coyote banking trojan, which has gained the novel ability to exploit Microsoft's UI Automation framework to facilitate banking credential compromise.
Cyber Security News reports that weaponized .LNK files have been used to facilitate the distribution of the DeerStealer malware as part of a novel phishing campaign.