Cybersecurity threat QakBot has returned after being shut down earlier by FBI. QakBot is targeting victims in the hospitality sector, appearing as a PDF file sent via email phishing by actors masquerading as the IRS. First appearing in 2008 as a banking trojan and credential stealer, it has evolved into a multi-purpose botnet. Microsoft reports that once the PDF file is downloaded and opened, the malware is installed on the computer.

New supply chain attack hits npm registry, compromising 40+ packages – Security Affairs
New supply chain attack hits npm registry, compromising 40+ packages Security Affairs