Elastic Security Labs has found a new malware called FINALDRAFT, related to an espionage campaign linked to China. The malware uses Microsoft’s Graph API for data theft and manipulation and was found in operations targeting various entities, including a South American foreign ministry, according to threat researchers. The attackers used Microsoft’s certutil app to download malicious files and then deploy the malware, which is also available in a Linux version.

North Korean Hackers Use Fake U.S. Companies to Spread Malware in Crypto Industry: Report
North Korean hackers reportedly set up shell companies in the US to penetrate the crypto sector and target developers via fake job offers, according to