Security Affairs
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 108|Security Affairs newsletter Round 588 by Pierluigi Paganini – INTERNATIONAL EDITION|CISA Urges Utilities to Remove Internet-Exposed PLCs After Minnesota Attacks|Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens|Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic|South Korea Warns of State-Backed Watering Hole Attacks|Google AI Supercharges Chrome Security, Fixing 1,072 Bugs|What an LLM Can Find: A Practical, Cheap Path to Code-level Threat Discovery|Anthropic Finds Claude Breached Real Companies During Security Evaluations|SilverFox Targets Japanese Manufacturer With Advanced ValleyRAT Campaign|Researchers Expose Flying Eagle Criminal Ecosystem Behind Fake Chinese Police App|Why brand impersonation is becoming an initial access vector|SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 108|Security Affairs newsletter Round 588 by Pierluigi Paganini – INTERNATIONAL EDITION|CISA Urges Utilities to Remove Internet-Exposed PLCs After Minnesota Attacks|Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens|Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic|South Korea Warns of State-Backed Watering Hole Attacks|Google AI Supercharges Chrome Security, Fixing 1,072 Bugs|What an LLM Can Find: A Practical, Cheap Path to Code-level Threat Discovery|Anthropic Finds Claude Breached Real Companies During Security Evaluations|SilverFox Targets Japanese Manufacturer With Advanced ValleyRAT Campaign|Researchers Expose Flying Eagle Criminal Ecosystem Behind Fake Chinese Police App|Why brand impersonation is becoming an initial access vector|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 108

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter TAG-195 Upgrades MaaS Ecosystem with Modular Tools  Inside a DPRK BlueNoroff ClickFix Kit SourTrade: Browser-Assembled Malware Delivered Through Malvertising   MedusaHVNC: A Hidden Desktop That Steals Live Windows Sessions   Unpacking “Cruciferra”: An Analysis of a […]

Security Affairs malware newsletter 2

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape

Malware Newsletter

TAG-195 Upgrades MaaS Ecosystem with Modular Tools 

Inside a DPRK BlueNoroff ClickFix Kit

SourTrade: Browser-Assembled Malware Delivered Through Malvertising  

MedusaHVNC: A Hidden Desktop That Steals Live Windows Sessions  

Unpacking “Cruciferra”: An Analysis of a Sophisticated Crypter Service  

Dysphoria: A Rising Star in Botnets – Evolution and In-Depth Technical Analysis  

Adform compromised to serve crypto stealer via supply chain attack  

Cato CTRL™ Threat Research: SilverFox Evolves: Abuse of New Drivers and Trusted Software Hijacking Enable Remote Access with ValleyRAT in Japan

Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon  

ClickFix, EtherHiding & a DPRK Wallet Trail

(Joint Cybersecurity Advisory) Warning Against Hacking Attacks on Korean Citizens and Businesses by State-Backed Hacking Organizations  

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft  

OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia 

Nested Trust: HollowFrame’s Layered Loader and Matryoshka Backdoors

Guarding Organizations Against Malware Risk: A Novel Graph-Based Malware Detection Method

EXE-Bench: Ranking the Tradeoffs of AI-based Windows Malware Detectors for Real-World Usability

Symmetric Dual-Domain Prototype Adaptation for Few-Shot Image-Based Malware Classification

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)