Google Threat Intelligence has developed new threat hunting techniques for identifying malicious .desktop files, which are being used as a new attack method to compromise systems. Initially identified by Zscaler researchers in 2023, the method involves the misuse of .desktop files, usually used to establish application launch behaviour in Linux desktop environments, to execute malicious commands. The cybercriminals typically use junk code to conceal malevolent intent and exploit system processes to deploy malware.

NHS calls on suppliers to improve their cybersecurity
NHS digital and cyber leaders are urging suppliers to sign a voluntary cybersecurity charter to improve resilience against cyber threats within the supply chain. This