ACRStealer, an information-stealing malware, used Google Docs for covert command and control communications. Legitimate platforms were used to facilitate the malware’s distribution, enabling the extraction of various confidential data. Among the sectors impacted is the U.S. defense, affecting over 500 employees across top defense and aerospace contractors, as well as hundreds of Army and Navy computers. Others used by ACRStealer included Steam and telegra.ph.

GitHub and Jira Alerts Hijacked for Trusted-SaaS Phishing
Hackers are abusing GitHub and Jira’s built‑in notification systems to send phishing emails that appear completely legitimate. Because these emails are sent from the platforms’


