New SecuriDropper Malware Bypasses Android 13 Restrictions, Disguised as Legitimate Applications

A new malware is bypassing an Android 13 security measure that restricts permissions to apps downloaded out of the legitimate Google Play Store. Continue reading New SecuriDropper Malware Bypasses Android 13 Restrictions, Disguised as Legitimate Applications

Gaming-related cyberthreats in 2023: Minecrafters targeted the most

Gaming-related threat landscape in 2023: desktop and mobile malware disguised as Minecraft, Roblox and other popular games, and the most widespread phishing schemes. Continue reading Gaming-related cyberthreats in 2023: Minecrafters targeted the most

WhatsApp spy mod spreads through Telegram, attacks Arabic-speaking users

A WhatsApp mod with a built-in spy module has been spreading through Arabic and Azeri Telegram channels since August 2023. Continue reading WhatsApp spy mod spreads through Telegram, attacks Arabic-speaking users

Stealer for PIX payment system, new Lumar stealer and Rhysida ransomware

In this report, we share our latest crimeware findings: GoPIX targeting PIX payment system; Lumar stealing files and passwords; Rhysida ransomware supporting old Windows. Continue reading Stealer for PIX payment system, new Lumar stealer and Rhysida ransomware

Updated MATA attacks industrial companies in Eastern Europe

In early September 2022, we discovered several new malware samples belonging to the MATA cluster. The campaign had been launched in mid-August 2022 and targeted over a dozen corporations in Eastern Europe from the oil and gas sector and defense industry. Continue reading Updated MATA attacks industrial companies in Eastern Europe

A cryptor, a stealer and a banking trojan

In this report, we share our latest crimeware findings: the ASMCrypt cryptor/loader related to DoubleFinger, a new Lumma stealer and a new version of Zanubis Android banking trojan. Continue reading A cryptor, a stealer and a banking trojan