Security Affairs
Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|WhatsApp Adds Stronger Security as Passkeys Hit 1 Billion|Operation Jackal: 58 Arrests Expose the Money Laundering Machine Behind Global Scams|Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack|Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|WhatsApp Adds Stronger Security as Passkeys Hit 1 Billion|Operation Jackal: 58 Arrests Expose the Money Laundering Machine Behind Global Scams|Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 93

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape CPU-Z / HWMonitor watering hole infection – a copy-pasted attack   Fake Claude site installs malware that gives attackers access to your computer   Malware Analysis Static SKILL for Codex   JanelaRAT: a financial threat targeting users in Latin […]

Security Affairs malware newsletter 2

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape

CPU-Z / HWMonitor watering hole infection – a copy-pasted attack  

Fake Claude site installs malware that gives attackers access to your computer  

Malware Analysis Static SKILL for Codex  

JanelaRAT: a financial threat targeting users in Latin America  

Mirax: a new Android RAT turning infected devices into potential residential proxy nodes

Mirax extraction pipeline for StreamTV-like droppers    

08 Chrome Extensions Linked to Data Exfiltration and Session Theft via Shared C2 Infrastructure  

Hospitals, local governments, and FPV operators are in the focus of the UAC-0247 cyber threat cluster

Signed software abused to deploy antivirus-killing scripts

Someone Bought 30 WordPress Plugins and Planted a Backdoor in All of Them  

Inside ZionSiphon: Darktrace’s Analysis of OT Malware Targeting Israeli Water Systems  

Tracking Mirai Variant Nexcorium: A Vulnerability-Driven IoT Botnet Campaign

A Deep Dive Into Attempted Exploitation of CVE-2023-33538      

Phantom in the vault: Obsidian abused to deliver PhantomPulse RAT  

PowMix botnet targets Czech workforce  

QEMU abused to evade detection and enable ransomware delivery

Can Drift-Adaptive Malware Detectors Be Made Robust? Attacks and Defenses Under White-Box and Black-Box Threats

LLM4CodeRE: Generative AI for Code Decompilation Analysis and Reverse Engineering

Wavelet-Based and MAML-Driven Framework for Enhanced Few-Shot Malware Classification

Mitigating Metamorphic Malware Through Adversarial Learning Techniques  

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)