Security News

North Korean Hackers Target Brazilian Fintech with Sophisticated Phishing Tactics
2024-06-14 06:45

Threat actors linked to North Korea have accounted for one-third of all the phishing activity targeting Brazil since 2020, as the country's emergence as an influential power has drawn the...

Brazilian Banks Targeted by New AllaKore RAT Variant Called AllaSenha
2024-05-29 14:58

Brazilian banking institutions are the target of a new campaign that distributes a custom variant of the Windows-based AllaKore remote access trojan (RAT) called AllaSenha. The malware is...

PixPirate Android Banking Trojan Using New Evasion Tactic to Target Brazilian Users
2024-03-13 13:55

The threat actors behind the PixPirate Android banking trojan are leveraging a new trick to evade detection on compromised devices and harvest sensitive information from users in Brazil. The...

New Banking Trojan CHAVECLOAK Targets Brazilian Users via Phishing Tactics
2024-03-11 14:47

Users in Brazil are the target of a new banking trojan known as CHAVECLOAK that's propagated via phishing emails bearing PDF attachments. "This intricate attack involves the PDF downloading a ZIP...

New Coyote Trojan Targets 61 Brazilian Banks with Nim-Powered Attack
2024-02-09 10:28

Sixty-one banking institutions, all of them originating from Brazil, are the target of a new banking trojan called Coyote. "This malware utilizes the Squirrel installer for distribution,...

Brazilian Feds Dismantle Grandoreiro Banking Trojan, Arresting Top Operatives
2024-01-30 16:43

A Brazilian law enforcement operation has led to the arrest of several Brazilian operators in charge of the Grandoreiro malware. The Federal Police of Brazil said it served five temporary arrest...

8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses
2023-06-28 10:15

A ransomware threat called 8Base that has been operating under the radar for over a year has been attributed to a "Massive spike in activity" in May and June 2023. VMware said 8Base is "Strikingly" similar to that of another data extortion group tracked as RansomHouse, citing overlaps in the ransom notes dropped on compromised machines and the language used in the respective data leak portals.

Brazilian Cybercriminals Using LOLBaS and CMD Scripts to Drain Bank Accounts
2023-06-05 04:48

An unknown cybercrime threat actor has been observed targeting Spanish- and Portuguese-speaking victims to compromise online banking accounts in Mexico, Peru, and Portugal. The cybersecurity company attributed the campaign, dubbed Operation CMDStealer, to a Brazilian threat actor based on an analysis of the artifacts.

Alert: Brazilian Hackers Targeting Users of Over 30 Portuguese Banks
2023-05-25 11:32

A Brazilian threat actor is targeting Portuguese financial institutions with information-stealing malware as part of a long-running campaign that commenced in 2021. PeepingTitle, like Maxtrilha, is written in the Delphi programming language and is equipped to grant the attacker full control over the compromised hosts as well as capture screenshots and drop additional payloads.

PixPirate: New Android Banking Trojan Targeting Brazilian Financial Institutions
2023-02-04 13:39

A new Android banking trojan has set its eyes on Brazilian financial institutions to commit fraud by leveraging the PIX payments platform. "PixPirate belongs to the newest generation of Android banking trojan, as it can perform ATS, enabling attackers to automate the insertion of a malicious money transfer over the Instant Payment platform Pix, adopted by multiple Brazilian banks," researchers Francesco Iubatti and Alessandro Strino said.