Kaspersky ICS CERT found a campaign targeting some Asian nations and using legitimate online services to spread malware. The campaign targets governments and industrial organisations, deploying malware hidden as tax documents delivered through phishing. The attack, named “SalmonSlalom”, utilised Chinese cloud services and other methods to evade detection. While not directly attributable to any particular group, the tactics suggest a Chinese-speaking threat is involved. Kaspersky recommended measures to prevent attacks, including two-factor authentication, regular updates, and deploying a SIEM system.

New GitHub Scam With Thousand of “mods” & “cracks” Steal Your Data
GitHub’s repository system has been targeted by a malware operation designed to steal information. It uses fake software downloads and gaming mods to deliver the