Cybersecurity experts at Zscaler ThreatLabz discovered a malware-as-a-service (MaaS) threat named BunnyLoader, available for sale on the cybercrime underground network for $250 for a lifetime license. BunnyLoader can download and execute payloads, steal browser credentials and system information. It has fileless loading and anti-detection features. The malware also captures keystrokes, monitors clipboard content, and can replace cryptocurrency wallet addresses. The initial access mechanism for BunnyLoader is yet unknown.

Hackers’ “bullet-proof” hosts deliver malware from blockchains
Hacking groups—at least one of which works on behalf of the North Korean government—have found a new and inexpensive way to distribute malware from “bullet-proof”