News

barcode

A new adware campaign was discovered, involving 51 individual apps from various sources. The apps engage in “fake impression” ad-fraud…

|
Last updated June 23, 2021
italian hackers

An Italian “protection” software provider has been discovered to be the author of the GuLoader malware. Researchers have compared samples…

|
Last updated June 23, 2021
crypto miners

An “old” cryptomining actor known as “Tor2Mine” has returned, and is coming with additional malware this time. The group is…

|
Last updated June 23, 2021
malspam

Actors are distributing the Trickbot banking trojan via a global spamming campaign that exploits the BLM movement. Most of the…

|
Last updated June 23, 2021
Indian flag

Eleven dynamic activists in India have found themselves targeted by a coordinated spyware campaign. The tools that were used against…

|
Last updated June 23, 2021
adware

Fresh “Bundlore” versions indicate that the authors worked in making their adware pack compatible with Safari 12. The actors have…

|
Last updated June 23, 2021
encrochat phone

Encrochat told its users to erase all data from their devices and ditch them as soon as possible. Apparently, Europol…

|
Last updated June 23, 2021
adware

Another 47 adware apps that are part of a new campaign on the Play Store have been discovered. The apps…

|
Last updated June 23, 2021
Skull formed around malware code

TrickBot is now checking what resolution it’s running on and stops if it’s an unusually low setting. The notorious trojan…

|
Last updated June 23, 2021
android bloatware

Kaspersky estimates that a large portion of adware infections lie in the system partition and system libraries. This is done…

|
Last updated June 23, 2021
cerberus

The Cerberus app wore the sheepskin of a Spanish currency converter app and entered the Play Store. The app followed…

|
Last updated June 23, 2021
ransomware auction

Cerberus is for sale, but buying the project and running it would be more complicated than it sounds. The price…

|
Last updated June 23, 2021
ensiko_logo

Ensiko is a new PHP web shell that can encrypt server files, deface websites, and steal information. The malware is…

|
Last updated June 23, 2021
unesco_malware

An online knowledge portal of UNESCO was infected by malicious listings pointing to phishing pages. In many cases, macro-ridden documents…

|
Last updated June 23, 2021
qak bot banking_trojan

The QakBot banking trojan has broken its malicious functionality into chunks, and AVs have trouble detecting it. The actors are…

|
Last updated June 23, 2021
duck

There’s a new cryptominer out there, and it comes with a rich set of features and exploitation capabilities. “Lemon_Duck” is…

|
Last updated June 23, 2021
sneakers

An ad-clicker malware for Android has found its way inside 65,000 devices, generating billions of fake impressions. The authors of…

|
Last updated June 23, 2021
rat

A new Python-based remote access trojan called PyVil has been added to Evilnum’s arsenal. The custom malware can take screenshots,…

|
Last updated June 23, 2021
Monero Icon Logo

Cryptocurrency miners on Linux are wiping out each other as they’re looking to capture all system resources for themselves. Crooks…

|
Last updated June 23, 2021

A spyware app presenting itself as “TikTok Pro” is actually a powerful spyware that can steal various types of user…

|
Last updated June 23, 2021
For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: