Google Threat Intelligence has started a blog series to equip security professionals with advanced threat-hunting techniques, focusing on malicious .desktop files in Linux. These files can conceal harmful commands, often linked to campaigns involving Google Drive distractions. The series emphasizes query-based hunting strategies for detecting these threats, allowing proactive identification and adaptability for various environments.

GitHub hit by a sophisticated malware campaign as ‘Banana Squad’ mimics popular repos
The repository names are identical to other repositories, indicating typo-squatting. These repositories also contain search keywords and emojis, signifying potential AI use. ReversingLabs warns developers