CyberOwl has reported on a phishing and malware campaign that’s impersonating Iranian oil and gas traders, including maritime operators. The attackers are using a new domain to send and receive malware-laced emails. The malware is then executed when recipients open the attachments. The attacks are thought to be part of a wider effort to expose breaches of US sanctions on Iran, though some attacks appear financially motivated.

TikTok AI videos spread malware by tricking users
Hackers are using AI-generated video on TikTok to instruct users on downloading infostealer malware onto Windows 11 PCs. The AI narrates a video claiming to