A series of cybersecurity threats have emerged targeting developers, employees, and organizations through multiple sophisticated malware campaigns. Over 70 malicious npm and Visual Studio Code packages have been identified stealing data, wiping files, and triggering system shutdowns by exploiting trusted package names to infiltrate development environments. Cybercriminals have also exploited Google's no-code tool AppSheet to impersonate Meta via Facebook, launching a phishing campaign that deviates from traditional methods. Additionally, attackers are hijacking employee payrolls by manipulating Google search results for payroll portals, redirecting salary payments to hackers through fake sites, mobile traps, and compromised home routers. Another threat involves hackers creating a counterfeit Bitdefender site to distribute the Venom RAT malware, which steals passwords, cryptocurrency, and system control using open-source tools and MFA bypass techniques. Furthermore, a new malware strain is hijacking exposed Docker APIs to covertly mine cryptocurrency, spreading autonomously without a command-and-control server. These developments highlight the evolving tactics cybercriminals are employing to exploit trusted platforms, developer tools, and employee behaviors to conduct data theft, financial fraud, and unauthorized system control.
En détournant les recherches Google sur mobile, des attaquants ont lancé une campagne de phishing ciblant celles et ceux qui cherchent à accéder à leur portail RH. Objectif : siphonner leur salaire, ni vu ni connu. https://t.co/1V7NDOumF9
👀 Your Docker containers might be mining crypto—without you knowing. A new malware is hijacking exposed Docker APIs, spreading like a worm, and turning systems into a crypto-mining botnet—no C2 server required. 🔍 See how it spreads: https://t.co/a2FyQ8NBZ7
🚨 Hackers built a fake Bitdefender site to push Venom RAT—stealing passwords, crypto, and control. Behind it? A stealthy combo of open-source tools, MFA bypass tricks, and real-time phishing tactics. You won’t believe what they’re exploiting now. Read: https://t.co/0ymfNc1KtT