← Back
MalwareSANS Internet Storm Center·2 hours ago

DOUBLECUP's PNG Payload, (Mon, Aug 24th)

New malware that uses steganography always gets my attention, but I was disappointed when I looked at the latest DOUBLECUP write-up. It doesn&#;x26;#;39;t use real steganography:

Read full article at SANS Internet Storm Center

Related Articles

MalwareHelp Net Security·29 minutes ago

Android car head units infected with proxy botnet malware through built-in software updaters

Kaspersky researchers discovered a novel Android malware that exploits built-in software updaters on car head units to distribute itself, marking the first documented malware infection chain specifically targeting automotive infotainment systems. Once installed, the malware converts infected devices into ad-fraud tools and nodes within a proxy botnet, taking advantage of the fact that car head units often contain SIM cards and internet connectivity.

MalwareThe Hacker News·2 hours ago

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors. The vast majority of the targets are located in Brazil, Bolivia, China, Canada, and Vietnam. Details of the threat activity came to light following the discovery of an open

MalwareSecurityWeek·2 days ago

Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight

Three banking trojans are currently active threats: Manic, which incorporates spyware capabilities; Grandoreiro, which maintains persistent campaigns targeting victims in Latin America and Europe; and ToxicPanda 2.0, an expanded variant of the ToxicPanda malware. Security professionals should monitor these banking trojans as they demonstrate ongoing development and geographic targeting sophistication.