Bradley Duncan and Zach Diehl of Unit 42 have discovered a malware campaign using Bing ads to direct users to fake software pages and upload malware. One example found on 22 January 2025 led users to a fake Microsoft Teams download page where a seemingly innocuous JavaScript file was downloaded, which then downloaded further malware files to the user’s system. The researchers emphasise the importance of checking URLs and avoiding clicking on ads when downloading software.

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using


