A significant rise in a malware campaign against Russian businesses has been identified in 2025. The attackers use weaponized RAR archives to deliver the potent PureRAT backdoor and PureLogs stealer. The attack primarily spreads through spam emails which include malicious attachments or download links. This malware, which disguises itself using common financial and accounting terms, particularly targets financial departments and it’s accessible to various threat actors.

SK Telecom revealed that malware breach began in 2022
South Korean mobile network operator SK Telecom has revealed a malware attack beginning in 2022 exposed the data of 27 million users. Twenty-five types of