The new information-stealing malware “PupkinStealer” is a major threat to Windows users globally. It targets sensitive data via the .NET framework and exploits local encryption keys and the Windows Data Protection API. It spreads through social engineering tactics and after activation, it silently extracts sensitive data and transmits it to attackers using Telegram’s Bot API. The malware lacks persistence mechanisms but is a major privacy risk to both businesses and individuals.

Cybercriminals Use Malware-Laced Fake Resumes to Target Recruiters
Cybersecurity firm Arctic Wolf Labs warns of an ongoing spear-phishing campaign ‘Venom Spider’ or ‘TA4557’ targeting recruiters and hiring managers with malware hidden in phony