1.
2.
3.
DAEMON Tools trojanized in supply-chain attack to deploy backdoor
(bleepingcomputer.com)
4.
5.
Amazon SES increasingly abused in phishing to evade detection
(bleepingcomputer.com)
6.
New Lotus data wiper used against Venezuelan energy, utility firms
(bleepingcomputer.com)
7.
New CrystalRAT malware adds RAT, stealer and prankware features
(bleepingcomputer.com)
8.
Coruna iOS exploit framework linked to Triangulation attacks
(bleepingcomputer.com)
9.
Bubble AI app builder abused to steal Microsoft account credentials
(bleepingcomputer.com)
10.
New Keenadu backdoor found in Android firmware, Google Play apps
(bleepingcomputer.com)
11.
Chinese Mustang Panda hackers deploy infostealers via CoolClient backdoor
(bleepingcomputer.com)
12.
Chinese state hackers use rootkit to hide ToneShell malware activity
(bleepingcomputer.com)
13.
WebRAT malware spread via fake vulnerability exploits on GitHub
(bleepingcomputer.com)
14.
15.
Italian spyware vendor linked to Chrome zero-day attacks
(bleepingcomputer.com)
16.
Malicious VSCode extension in Cursor IDE led to $500K crypto theft
(bleepingcomputer.com)
17.
'Batavia' Windows spyware campaign targets dozens of Russian orgs
(bleepingcomputer.com)
18.
Malware on Google Play, Apple App Store stole your photos—and crypto
(bleepingcomputer.com)