Monday, May 25, 2026
HomeMalware

Malware

APT41 Hackers Exploit Atexec and WmiExec to Distribute Malware via Windows Modules

A recent targeted cyberattack against government IT services in Africa has been attributed to the Chinese-speaking threat group APT41, marking a significant expansion of the group’s activity in the region. Kaspersky’s Managed Detection and Response (MDR) analysts uncovered the operation, which leveraged advanced techniques,...

Remote Command Execution Unleashed – Hackers Deploy APK Malware via 607 Malicious Domains

Cybersecurity researchers at PreCrime Labs, the threat research division of BforeAI, have uncovered a massive malicious campaign involving 607 domains that are actively distributing fake Telegram Messenger applications. The sophisticated operation, primarily targeting Chinese-speaking users, leverages advanced Android vulnerabilities to enable remote command execution...

Cybercriminals Leveraging DNS Gaps to Conceal and Distribute Malware

A sophisticated technique where threat actors are exploiting DNS infrastructure to hide malware and establish persistent command-and-control communications, turning the internet's foundational addressing system into an unwitting storage and delivery platform for malicious software. The discovery, made through analysis of passively collected DNS records in...

Zoom SDK Update Exploited by NimDoor Malware to Harvest Keychain Credentials on macOS

Security researchers have uncovered a sophisticated macOS malware campaign, dubbed NimDoor, in which North Korea-linked threat actors exploit fake Zoom SDK updates to steal sensitive data from cryptocurrency and Web3 organizations. The malware, which has been active since at least April 2025, represents a...

SquidLoader – A Stealthy Malware That Evades Detection with Advanced Techniques

A sophisticated new malware strain called SquidLoader is actively targeting financial services institutions across Hong Kong, Singapore, and Australia, achieving near-zero detection rates through advanced evasion techniques. Security researchers have identified this threat as particularly dangerous due to its ability to bypass traditional security...

Polyglot Files – A New Technique Hackers Use to Evade Email Filters and Deliver Malware

Security researchers at BI.ZONE Mail Security has uncovered a coordinated phishing campaign targeting Russian healthcare and IT organizations, which leverages advanced evasion tactics and a newly identified backdoor dubbed PhantomRemote. Beginning in late June 2025, the Rainbow Hyena cluster orchestrated the distribution of malicious...