Cybercriminals are using traffic distribution systems (TDSs) – tools originally designed to enhance advertising – to disseminate malware effectively. Criminal infrastructure, like TAG-124, is tracked by cybersecurity company Insikt Group, which found at least two ransomware groups use it to target health care and critical infrastructure sectors. The company recommends advanced detection, user education about SEO poisoning, and secure browser settings to defend against these threats.

Hackers Abuse Cloudflare Tunnel Infrastructure to Deliver Multiple RATs
Cybersecurity experts have uncovered a sophisticated attack exploiting Cloudflare’s tunnel infrastructure to distribute remote access trojans (RATs). Phishing emails with disguised attachments initiate the infection,