Sophisticated malware identified by cybersecurity researchers utilises JScript for its multi-stage attack chain, delivering different malware (either XWorm or Rhadamanthys) depending on the victim’s geographic location. This geolocation-based payload delivery is considered an evolution in targeted malware distribution. The techniques used allow attackers to bypass traditional security systems, with the malware also implementing thorough anti-forensic measures to evade detection.

Iran-linked hackers disrupt operations at US critical infrastructure sites
Hackers working on behalf of the Iranian government are disrupting operations at multiple US critical infrastructure sites, likely in response to the country’s ongoing war


