Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscapeMalware NewsletterCrashStealer: C++ macOS infostealer posing as crash reporterLucide Proxy: Turning Student Web Proxies into DDoS Bots AsyncAPI npm organization compromised, 2M weekly downloads affected OkoBot: new sophisticated malware framework targets cryptocurrency users TuxBot v3: Inside an IoT Botnet Framework With LLM-Assisted Development Claude for-Chrome Extension-BypassUAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains ClickLock Stealer turns a locked screen into a forensics case Hidden Infrastructure Exposed: ANY.RUN Reveals Hijacked Gov Websites Delivering MalwareDaxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor New North Korean campaign uses fake coding interviews to steal developer credentials NadMesh Botnet Analysis: A Product-Grade Threat for the AI Service Era Sequel to ChainVeil npm Malware Targets Vite Ecosystem Symmetric Dual-Domain Prototype Adaptation for Few-Shot Image-Based Malware ClassificationA Blockchain and Federated Learning Framework for Image-Based IoT Malware Detection and PreventionA Measurement Study of AI-Environment Realism Gaps in Malware-Analysis SandboxesMalaika: Understanding Malware through Tri-Grounded Agentic ReasoningFollow me on Twitter: @securityaffairs and Facebook and MastodonPierluigi Paganini(SecurityAffairs – hacking, newsletter)