← Back
MalwareSecurity Affairs·15 hours ago

Fake Minecraft Sites Are Still Spreading WeedHack After C2 Takedown

WeedHack, an infostealer malware distributed through fake Minecraft client sites, continues to spread despite disruption to its command-and-control infrastructure. McAfee Labs identified ten active malicious sites and multiple file-hosting accounts still delivering the malware, which leverages SEO poisoning to rank malicious downloads prominently in Google search results. The persistence of these distribution channels demonstrates the ongoing threat posed by the Minecraft-themed malware-as-a-service operation.

Read full article at Security Affairs

Related Articles

MalwareHelp Net Security·9 hours ago

Fake OpenAI Codex download tricks macOS users into installing malware

A malware campaign discovered by Cato Networks exploits sponsored search ads to direct macOS users to a fake OpenAI Codex download page, where victims are socially engineered into pasting malicious commands directly into Terminal. The attack uses a variation of the ClickFix technique, which manipulates users into executing the infection themselves rather than opening a malicious file, with the campaign beginning through sponsored search results for queries like "codex macos download."

MalwareThe Hacker News·10 hours ago

E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

Researchers have identified a novel command-and-control technique where threat actors exploit FTP banners as dead drop resolvers to deliver two previously unreported RATs named E4del and PINHOLE. This approach leverages legitimate FTP services to obscure malware communications and point to additional C2 infrastructure while evading detection.

MalwareSecurityWeek·11 hours ago

First Malware Built Specifically for Car Head Units Fuels Botnet

Kaspersky researchers have identified the first malware specifically designed to target car head units, which has been enlisted into the BadBox botnet infrastructure. The discovery represents a significant expansion of botnet operations into automotive systems, with the malware already compromising millions of devices across the network.

MalwareInfosecurity Magazine·12 hours ago

Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown

Threat actors continue distributing WeedHack malware to Minecraft players through counterfeit game clients, maintaining operations even after law enforcement dismantled the malware's original infrastructure in July. The persistence of this campaign demonstrates how attackers adapt their distribution channels when primary infrastructure is disrupted, keeping a known threat active against gaming communities.