A new technique enables threat actors to bypass Microsoft Outlook’s spam filters and send malicious ISO files to victims’ inboxes. The method uses hyperlink obfuscation to disguise harmful links. This practice undermines email security defenses, especially for organizations reliant on Outlook’s native spam filtering. The technique comes hot on the heels of revelations about the exploitation of ISO files to dodge Microsoft Defender SmartScreen.

GitVenom Malware Steals $456K in Bitcoin Using Fake GitHub Projects to Hijack Wallets
Cybersecurity researchers have found a campaign, dubbed GitVenom, targeting gamers and cryptocurrency investors through fake open-source projects hosted on GitHub, stealing personal and banking data