Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Malware
Latest news

Dero miner container infection campaign

21 May 2025  |  securebulletin.com  |  Malware

The recent campaign uncovered by Kaspersky, involving the Dero cryptocurrency miner spreading through containerized Linux environments by exploiting exposed Docker APIs, represents a sophisticated and highly automated threat...

>> read more

Trojanized KeePass campaign: novel loader and credential theft in ransomware operations

14 May 2025  |  securebulletin.com  |  Malware

A recent investigation by WithSecure’s Threat Intelligence team has uncovered a sophisticated malware campaign leveraging a trojanized version of the open-source password manager KeePass. This operation, active for...

>> read more

Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting

3 May 2025  |  securebulletin.com  |  Malware

A coordinated malware operation targeting npm employs cross-ecosystem typosquatting to mimic popular libraries from Python, Java, C++, and .NET ecosystems. Attackers uploaded packages like beautifulsoup4 (masquerading as Python’s...

>> read more

SuperCard X: exposing a MaaS for NFC Relay fraud operation

20 April 2025  |  securebulletin.com  |  Malware

The Cleafy Threat Intelligence team has uncovered SuperCard X, a sophisticated Android malware campaign leveraging NFC-relay attacks to authorize fraudulent POS and ATM transactions. This Malware-as-a-Service (MaaS) operation1...

>> read more

Malicious NPM packages targeting PayPal users: a recap analysis

12 April 2025  |  securebulletin.com  |  Malware

FortiGuard Labs recently uncovered a series of malicious NPM packages designed to steal sensitive information from compromised systems. These packages, created between March 5 and March 14, were...

>> read more

Malicious VSCode extensions: a growing threat to developers

7 April 2025  |  securebulletin.com  |  Malware

The Visual Studio Code (VSCode) Marketplace has recently become a target for sophisticated cyberattacks, with malicious extensions infiltrating development environments to deploy cryptominers. These attacks highlight vulnerabilities in...

>> read more

Stealth malware strikes WordPress via MU-Plugins: a technical deep dive

30 March 2025  |  securebulletin.com  |  Malware

The Sucuri research team has recently uncovered a concerning trend: threat actors are increasingly leveraging the WordPress mu-plugins directory to conceal malicious code. This tactic1 is particularly insidious...

>> read more

New breed of Android malware leverages .NET MAUI to slip past defenses

25 March 2025  |  securebulletin.com  |  Malware

Exploiting cross-platform development frameworks to deliver insidious malware. A recent report from McAfee highlights the emergence of Android malware campaigns that are leveraging the .NET MAUI framework to...

>> read more