DarkGate malware, also known as BattleRoyal, is spreading through weaponized fake browser updates and emails, allowing further malware downloads. The software is created using Delphi, operating within the system’s memory and resistant to detection. A total of 20 email campaigns using this malware have been identified, often utilizing steganography to hide the malicious code.

Apache ActiveMQ Flaw Exploited to Deploy DripDropper Malware on Cloud Linux Systems
Threat actors are exploiting a nearly two-year-old security flaw in Apache ActiveMQ to gain persistent access to cloud Linux systems and deploy malware called DripDropper.