Chinese threat actor UNC5174 is targeting Linux systems using SNOWLIGHT malware and a remote access trojan (RAT) called VShell, utilising open-source tools to reduce costs and complicate attribution. The group, which targets sectors across Europe, Asia, and the U.S, is extending its tactics to use fileless payloads for long-term access, with operations indicating the exploitation of known vulnerabilities in multiple vendors.

CBI arrests hacker for targeting Delhi Jal Board customers using malware | Delhi News
Indian cyber hacker Bittu Kumar has been arrested by the Central Bureau of Investigation (CBI) for running a malware scam using the Delhi Jal Board