SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 20

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape.

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape.

New Campaign Uses Remcos RAT to Exploit Victims

Bengal cat lovers in Australia get psspsspss’d in Google-driven Gootloader campaign      

Ymir: new stealthy ransomware in the wild  

ShrinkLocker (+Decryptor): From Friend to Foe, and Back Again   

Stealthy Attributes of APT Lazarus: Evading Detection with Extended Attributes  

Glove Stealer: Leveraging IElevator to Bypass App-Bound Encryption & Steal Sensitive Data  

Botnet exploits GeoVision zero-day to install Mirai malware

Unmasking the Shadows: Pinpoint the Implementations of Anti-Dynamic Analysis Techniques in Malware Using LLM

Chaotic-Based Shellcode Encryption: A New Strategy for Bypassing Antivirus Mechanisms  

Malware Spotlight:  A Deep-Dive Analysis of WezRat  

APT Actors Embed Malware within macOS Flutter Applications

Hamas-affiliated Threat Actor WIRTE Continues its Middle East Operations and Moves to Disruptive Activity  

CVE-2024-43451: A New Zero-Day Vulnerability Exploited in the wild

New PXA Stealer targets government and education sectors for sensitive information

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)