A China nexus threat actor is using the Antino backdoor against Asian government and policy organizations with Microsoft 365 services for command and control.
Novacare Hospitals has appointed Shakeel Akhter as Chief Information Officer, bringing extensive technology and innovation experience from Indus Hospital.
Researchers report that the Dysphoria IoT botnet has adopted blockchain based name services and infected device relays after law enforcement disrupted JackSkid infrastructure, making the botnet more resilient.
Cisco Talos has uncovered msaRAT, a Rust based malware used by Chaos ransomware that leverages headless Chrome and Edge browsers with WebRTC to conceal command and control communications.
Operation Endgame has disrupted the Amadey and StealC malware ecosystem, resulting in the takedown of 326 servers, 142 domains, recovery of 27 million stolen credentials, and restriction of more than $47 million in criminal cryptocurrency assets.
DragonForce ransomware operators have been linked to a new Go based remote access trojan called Backdoor.Turn that hides command and control communications through Microsoft Teams relay infrastructure, enabling long term stealthy access to victim networks.
Google, in collaboration with industry partners, has disrupted the infrastructure of UNC2814, a suspected China-linked cyber espionage group using GRIDTIDE malware to target 53 organizations across 42 countries, supporting affected organizations and cutting off malicious access.