You don't want this Sleepwalker backdoor on your Windows machine
Its own command language, 23 instructions - signs point to 'well-resourced operation rather than an opportunistic one'
Cybersecurity researchers have discovered that Weedhack malware is being actively distributed to gamers through fake Minecraft client websites that closely mimic legitimate projects with copied branding and features. McAfee Labs reported blocking over 6,300 attempts to access these malicious sites, which use SEO poisoning techniques and lookalike gaming websites to deceive users into downloading the malware.
Read full article at The Hacker News ↗Its own command language, 23 instructions - signs point to 'well-resourced operation rather than an opportunistic one'
ClickFix-style threat campaigns are employing a new evasion technique called WordlistLoader to disguise malware delivery and distribute Amatera, an infostealer that has been growing in prevalence. The obfuscation method leverages ordinary text files to bypass security detection mechanisms, allowing attackers to successfully deliver the malicious payload to targets.
Threat actors are leveraging excitement around leaked GTA 6 content by hosting fraudulent "Play Now" sites that distribute an infostealer capable of harvesting stored browser credentials. Users visiting these deceptive pages risk compromise of their password managers and cached authentication data. The campaign demonstrates how high-profile leaks continue to serve as effective social engineering vectors for credential theft operations.
SynkLoader, an advanced multilingual malware family, employs screen hijacking techniques to steal passwords while offering a range of novel capabilities that position it as a potential precursor to ransomware deployment. The malware revives an older attack method—screen hijacking—to effectively compromise credentials while maintaining additional functional tools for follow-on attacks.