Security News

Fake cheat lures gamers into spreading infostealer malware
2024-04-19 00:46

A new info-stealing malware linked to Redline poses as a game cheat called 'Cheat Lab,' promising downloaders a free copy if they convince their friends to install it too. Redline is a powerful information-stealing malware capable of harvesting sensitive information from infected computers, including passwords, cookies, autofill information, and cryptocurrency wallet information.

Google ad impersonates Whales Market to push wallet drainer malware
2024-04-18 17:55

Today, BleepingComputer was contacted about a phishing ad for the trading platform in Google search results. A quick search for Whales Market in Google displayed a sponsored ad at the top of the search results, displaying what looks like legitimate URLs for the site.

Kaspersky Study: Devices Infected With Data-Stealing Malware Increased by 7 Times Since 2020
2024-04-18 16:26

The number of devices infected with data-stealing malware in 2023 was 9.8 million, a sevenfold increase over the same figure for 2020, according to new research from Kaspersky Digital Footprint Intelligence. The data was obtained from log files that record the activities of "Infostealers." Infostealers are a type of malware that covertly extracts data from infected devices without encrypting it.

OfflRouter Malware Evades Detection in Ukraine for Almost a Decade
2024-04-18 14:25

Select Ukrainian government networks have remained infected with a malware called OfflRouter since 2015. Cisco Talos said its findings are based on an analysis of over 100 confidential documents...

How to Conduct Advanced Static Analysis in a Malware Sandbox
2024-04-18 10:31

Sandboxes are synonymous with dynamic malware analysis. They help to execute malicious files in a safe virtual environment and observe their behavior. However, they also offer plenty of value in...

SoumniBot malware exploits Android bugs to evade detection
2024-04-17 21:38

A new Android banking malware named 'SoumniBot' is using a less common obfuscation approach by exploiting weaknesses in the Android manifest extraction and parsing procedure. The method enables SoumniBot to evade standard security measures found in Android phones and perform info-stealing operations.

TA558 Hackers Weaponize Images for Wide-Scale Malware Attacks
2024-04-16 13:39

The threat actor tracked as TA558 has been observed leveraging steganography as an obfuscation technique to deliver a wide range of malware such as Agent Tesla, FormBook, Remcos RAT, LokiBot,...

CISA makes its "Malware Next-Gen" analysis system publicly available
2024-04-11 22:27

The U.S. Cybersecurity and Infrastructure Security Agency has released a new version of "Malware Next-Gen," now allowing the public to submit malware samples for analysis by CISA. Malware Next-Gen is a malware analysis platform that examines malware samples for suspicious artifacts. "The Cybersecurity and Infrastructure Security Agency announces today a new release of our malware analysis system, called Malware Next-Gen, which allows any organization to submit malware samples and other suspicious artifacts for analysis," reads the announcement.

Malicious PowerShell script pushing malware looks AI-written
2024-04-10 16:12

A threat actor is using a PowerShell script that was likely created with the help of an artificial intelligence system such as OpenAI's ChatGPT, Google's Gemini, or Microsoft's CoPilot. Accessing the shortcut file triggered PowerShell to run a remote script.

Raspberry Robin Returns: New Malware Campaign Spreading Through WSF Files
2024-04-10 13:10

Cybersecurity researchers have discovered a new Raspberry Robin campaign wave that propagates the malware through malicious Windows Script Files (WSFs) since March 2024. "Historically, Raspberry...