The malware ‘SteelFox’ has been found mining cryptocurrency and stealing credit card data, distributed via online forums and torrent trackers as a crack for legitimate software like Foxit PDF Editor and AutoCAD. The malware uses a vulnerable driver to gain system privileges, a tactic common among ransomware groups. First detected in August, SteelFox has been operating since February 2023 and has increased its distribution using multiple channels.

SesameOp: Using the OpenAI Assistants API for Covert C2 Communication
Microsoft’s Detection and Response Team has exposed a sophisticated backdoor malware that exploits the OpenAI Assistants API as an unconventional command-and-control communication channel. Named SesameOp,
															

