SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 115

Wait 5 sec.

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscapeMalware NewsletterGray Rabbits and the Tale of a One-Click Backdoor  Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkitMalicious Twitch Browser Extension Exposes 30,000 Users’ OAuth Tokens to Russian Bot Service  Mind the (Patch) Gap: Multiple Chinese Threat Actors Chain 0-day Exploits in Chrome & Windows  The banana stand: brokering and managing infections across Asia using MQTT Iranian cyber targeting of dissidents, activists and journalistsSilkParasite Infrastructure: SpiceRAT Servers Tied to Energy and Government Targets Across Central AsiaBeware the SparroWock: The backdoor that bites, the commands that catchBrevo supply chain attack hits 100k+ sites with WordPress backdoors and Clickfix malware Skill Poisioning turning AI agents into malware droppers – warns China’s National CERT  RatHat: AI-Powered Mobile Threat is Here for Your Credentials & Bank Accounts  Brevo supply chain attack hits 100k+ sites with WordPress backdoors and Clickfix malware The extension you never installed: KREMLIN forges Chrome’s own integrity checks to steal banking sessions Delphi Scanner: efficient and interpretable static malware detection via API sequence modelingALIBI: Adversarial Legitimacy Injection in Binary Input against LLM Malware AnalyzersMetamorphic Malware Detection via Graph-Augmented Neural Semantics and Adversarial Hardening: A Comprehensive FrameworkUncertainty-Aware Zero-Day Botnet Detection for IoT Networks with Real-World Edge Deployment on Resource-Constrained HardwareFollow me on Twitter: @securityaffairs and Facebook and MastodonPierluigi Paganini(SecurityAffairs – hacking, newsletter)