Microsoft has stopped a global malvertising campaign impacting around a million devices. GitHub repositories, crucial to the attack, were eliminated. The attack likely originated from illicit streaming websites. Hackers injected malevolent ads into video streams on illegal streaming sites, redirecting viewers to GitHub repositories under hacker control. Microsoft’s Threat Intelligence team also found that payloads were hosted on Dropbox and Discord. The attack methodology included setting a dropper for later payloads and using PowerShell to extract information.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical