Information-stealing malware ExelaStealer is attacking Windows systems, stealing passwords, credit cards, keystrokes and more, according to The Hacker News. Distributed as a fraudulent PDF document, threat actors are likely using phishing methods to deploy the malware. More actors are expected to use ExelaStealer, which ranges from $20-$120 depending on the plan. The malware could be used for blackmail, espionage or ransom.
Novel SSH backdoor leveraged in Chinese cyberespionage attacks
The new Coyote trojan variant attack uses a LNK file to execute a PowerShell command, which helps retrieve a PowerShell script for launching the trojan.