Cyber attackers are using business applications, including DeepSeek, AutoCAD, UltraViewer, to spread backdoors for remote access. Among the three malware used is TookPS, first identified by Kaspersky in March. The campaign mimics several brands and offers free downloads of different software, which actually installs the TookPS loader, allowing for command-and-control actions by the attackers. The fake software sites have received significant exposure and have also been spread through malvertising on Google Ads.

Verizon Call Filter API flaw could’ve exposed millions of Americans’ call records
Verizon’s Call Filter app had a security flaw that could have allowed unauthorized access to incoming call details for another user. The vulnerability was discovered