Monday, May 25, 2026
HomeMalware

Malware

New LunaSpy Malware Disguised as Antivirus Threatens Android Devices

In a new wave of mobile threats, security researchers have uncovered LunaSpy, a sophisticated Android spyware masquerading as legitimate antivirus and banking protection tools. Since emerging in late February 2025, LunaSpy has been distributed via messaging platforms such as Telegram and WhatsApp, duping users...

Silver Fox Hackers Harness Google Translate Tools to Spread Windows Malware

The Knownsec 404 Advanced Threat Intelligence Team has uncovered a sophisticated malware campaign where cybercriminals are impersonating popular online tools, particularly Google Translate, to distribute the dangerous Silver Fox Trojan. This attack method, which can be traced back to 2024, uses deceptive Flash update...

Malware LAMEHUG – The First AI-Driven Threat Using Official Email Accounts to Target Organizations

Security researchers have identified a groundbreaking cyber threat that represents a significant evolution in malware capabilities. The LAMEHUG malware, deployed by the notorious APT28 group (also known as UAC-0001 and Forest Blizzard), marks the first publicly documented case of attackers integrating large language models...

DoubleTrouble – A New Banking Malware Targeting Users Through Phishing Sites to Steal Credentials

Cybersecurity researchers have uncovered a sophisticated banking trojan called DoubleTrouble that has rapidly evolved its attack methods, shifting from traditional phishing websites impersonating European banks to leveraging Discord channels for malware distribution. The malware represents a significant threat to mobile banking security, employing advanced...

RedLoader Malware Spread via Weaponized LNK Files Targeting Windows Systems

Cybersecurity researchers have identified a sophisticated new infection chain employed by the GOLD BLADE cybercriminal group, also known as RedCurl, Red Wolf, and Earth Kapre, targeting human resources personnel through weaponized resume documents. The financially motivated threat actors have combined previously observed techniques to create...

Global Malware Thrives on Qwins Ltd’s Bulletproof Hosting Services

Cybersecurity researchers have uncovered what appears to be a bulletproof hosting operation centered around UK-incorporated Qwins Ltd, revealing a sophisticated criminal infrastructure supporting multiple malware families, including Lumma, Vidar, DarkGate, and various botnets. The investigation, which began with routine analysis of Lumma infostealer samples,...