Windsurf IDE Extension Drops Malware via Solana Blockchain
Bitdefender researchers have identified a malicious Windsurf IDE extension that leverages the Solana blockchain to deliver and host a multi-stage NodeJS stealer payload. This attack chain represents an unconventional approach to malware distribution, using blockchain infrastructure to obscure and deploy the theft functionality against developers using the compromised IDE extension.
Kaspersky researchers discovered a novel Android malware that exploits built-in software updaters on car head units to distribute itself, marking the first documented malware infection chain specifically targeting automotive infotainment systems. Once installed, the malware converts infected devices into ad-fraud tools and nodes within a proxy botnet, taking advantage of the fact that car head units often contain SIM cards and internet connectivity.
Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors. The vast majority of the targets are located in Brazil, Bolivia, China, Canada, and Vietnam. Details of the threat activity came to light following the discovery of an open
New malware that uses steganography always gets my attention, but I was disappointed when I looked at the latest DOUBLECUP write-up. It doesn&#;x26;#;39;t use real steganography: