Security News

North Korean Hackers Deploy OtterCookie Malware in Contagious Interview Campaign
2024-12-27 17:42

North Korean threat actors behind the ongoing Contagious Interview campaign have been observed dropping a new JavaScript malware called OtterCookie. Contagious Interview (aka DeceptiveDevelopment)...

Cloud Atlas Deploys VBCloud Malware: Over 80% of Targets Found in Russia
2024-12-27 11:10

The threat actor known as Cloud Atlas has been observed using a previously undocumented malware called VBCloud as part of its cyber attack campaigns targeting "several dozen users" in 2024....

New 'OtterCookie' malware used to backdoor devs in fake job offers
2024-12-26 16:53

North Korean threat actors are using new malware called OtterCookie in the Contagious Interview campaign that is targeting software developers. [...]

Iran's Charming Kitten Deploys BellaCPP: A New C++ Variant of BellaCiao Malware
2024-12-25 10:24

The Iranian nation-state hacking group known as Charming Kitten has been observed deploying a C++ variant of a known malware called BellaCiao. Russian cybersecurity company Kaspersky, which dubbed...

How Androxgh0st rose from Mozi's ashes to become 'most prevalent malware'
2024-12-24 16:02

Botnet's operators 'driven by similar interests as that of the Chinese state' After the Mozi botnet mysteriously disappeared last year, a new and seemingly more powerful botnet, Androxgh0st, rose...

'That's not a bug, it's a feature' takes on a darker tone when malware's involved
2024-12-23 21:30

Mummy, where do zero days come from? Opinion One of the charms of coding is that malice can be indistinguishable from incompetence. Last week's Who, Me? story about financial transfer test...

AI Could Generate 10,000 Malware Variants, Evading Detection in 88% of Case
2024-12-23 13:48

Cybersecurity researchers have found that it's possible to use large language models (LLMs) to generate new variants of malicious JavaScript code at scale in a manner that can better evade...

Lazarus Group Spotted Targeting Nuclear Engineers with CookiePlus Malware
2024-12-20 10:44

The Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPRK), has been observed leveraging a "complex infection chain" targeting at least two employees...

Rspack npm Packages Compromised with Crypto Mining Malware in Supply Chain Attack
2024-12-20 08:39

The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli, were compromised in a software supply chain attack that allowed a malicious actor to publish...

BadBox malware botnet infects 192,000 Android devices despite disruption
2024-12-19 22:01

The BadBox Android malware botnet has grown to over 192,000 infected devices worldwide despite a recent sinkhole operation that attempted to disrupt the operation in Germany. [...]