Tag

#malware

71 stories taggedmalware · page 3 of 5.

Photoreal news-editorial overhead shot of a developer's dark wooden desk, glowing laptop screen showing an abstract green-on-black code repository interface wit
Threat Intelligence

Fake AI Tools on GitHub Are Hiding Malware, Researchers Find 7,600 Booby-Trapped Repos

A campaign called FakeGit is dressing up malicious code as AI helpers and developer tools to trick programmers into installing SmartLoader.

3 min read
Photoreal editorial shot of a laptop screen showing a generic software installer progress bar in a dim home office, warm desk lamp glow, a small out-of-focus Ru
Threat Intelligence

Fake Font Files Are Hiding Malware That Steals Passwords and Takes Over Windows PCs

A phishing campaign spotted since late March disguises malicious code as font files and runs it entirely in memory, making it nearly invisible to standard antivirus tools. FedEx and other familiar brands are being impersonated to get victims to open the door.

3 min read
Full-frame photoreal editorial shot of a dimly lit server rack in a small unmarked room, one door left ajar with light spilling into a corridor, cables slightly
Threat Intelligence

Careless malware crew leaves 1,048-file toolkit exposed on the open web

Rapid7 researchers grabbed the lot after the operators forgot to lock their delivery server. Inside: AI-written lures, dropper experiments and a live infostealer campaign hitting Windows users in Mexico.

3 min read
Full-frame photoreal news-editorial image of a dimly lit office desk at night, a laptop screen glowing with a blurred calendar grid showing dates far in the fut
Threat Intelligence

HollowGraph Spies Hide Their Orders in Fake Calendar Events Dated 2050

A newly named espionage tool turns Microsoft 365 calendars into a secret mailbox, tucking instructions and stolen files into meetings set decades in the future.

3 min read
Full-frame photoreal news-editorial image of a dimly lit developer workstation at night, glowing monitor showing rows of package manager install output in green
Threat Intelligence

Seven booby-trapped npm packages hit Vite developers with blockchain-controlled malware

Researchers at Checkmarx say the ViteVenom campaign hides its command server across four different cryptocurrency networks, making it unusually hard to shut down.

3 min read
Full-frame photoreal editorial shot of a laptop screen showing an abstract national flag image rendered in soft focus, with faint hexadecimal code faintly visib
Threat Intelligence

North Korean Job-Interview Scam Hides Malware Inside Flag Images

Fake coding tests planted a four-stage stealer on developers' machines, with the payload smuggled inside SVG picture files.

3 min read
Macro photograph of a circuit board with a faint green glow emanating from one chip cluster, while the surrounding board remains dark and unlit, 16:9 framing, p
Threat Intelligence

Malware Disguised as Font Files Targets Windows Users

A global phishing campaign uses fake font files to deploy credential-stealing malware.

2 min read
Full-frame overhead view of a modern silver laptop on a dark wooden desk, screen showing a blurred generic system password dialog with a red warning glow, apps
Threat Intelligence

ClickLock: The Mac Stealer That Won't Let You Work Until You Hand Over Your Password

A new macOS malware kills your apps in a loop every 210 milliseconds, holding your machine hostage until you type in your login password.

4 min read
Photoreal editorial image, 16:9, full frame edge to edge
Threat Intelligence

TELEPUZ: The New Malware Hiding Behind Fake 'Fix This' Website Pop-ups

A modular info-stealer is spreading through booby-trapped websites that trick visitors into pasting malicious commands into their own computers.

3 min read
Photoreal editorial 16:9 image of a darkened developer workstation with a MacBook open to a terminal window, blurred cryptocurrency price tickers reflected in t
Threat Intelligence

ClickLock Stealer Tricks Mac Users Into Handing Over Their Own Passwords

A newly discovered piece of Mac malware skips the usual hacking tricks and simply persuades victims to run it themselves, then locks the screen until they surrender their passwords.

3 min read
Photoreal editorial shot of a laptop screen showing a generic software installer progress bar in a dim home office, warm desk lamp glow, a small out-of-focus Ru
Threat Intelligence

Russian Crew Hides Starland Backdoor Inside Fake Zoom and WebEx Installers

UAT-11795 is spiking popular software downloads with a credential-and-crypto stealer, and US users are the main target.

4 min read
Extreme close-up of a glowing green terminal screen filled with cascading lines of package dependency text and vulnerability identifiers, shot from a low angle
Vulnerabilities

Two Popular Coding Tools Poisoned With Malware in Back-to-Back Supply Chain Attacks

Criminals hijacked developer credentials to slip malicious code into widely used JavaScript packages, putting any computer that installed them at serious risk.

3 min read
Full-frame edge-to-edge photoreal editorial shot of a small metallic cryptocurrency hardware wallet plugged into a laptop USB port on a dark wooden desk, faint
Threat Intelligence

OkoBot Malware Hijacks Ledger and Trezor Apps to Steal Crypto Recovery Phrases

A Windows malware framework active since April 2025 waits for victims to open their hardware wallet software, then fakes a prompt for the 24 words that unlock everything.

3 min read
Overhead 16:9 editorial photo of a silver Apple laptop sitting open on a dark matte desk, its screen glowing with a faint green terminal-style light, surrounded
Vulnerabilities

A Hidden Door in Windows: How Attackers Can Blind Security Software to Malware

Researchers at Bitdefender have shown how a little-known Windows feature called bind links can be twisted to make malicious files invisible to the tools companies rely on to catch intrusions.

3 min read
Photoreal editorial shot of a developer's darkened desk, an open laptop showing rows of green package names in a terminal, one line highlighted in red, faint bl
Threat Intelligence

Hijacked AsyncAPI npm Packages Slipped a Botnet Loader Into Developer Machines

Four packages under the popular @asyncapi namespace were tampered with to deliver a multi-stage malware loader, in the latest reminder that the open-source supply chain is a soft target.

3 min read
© 2026 Threat Vectr