The SmokeLoader malware has launched attacks on Taiwanese industries including healthcare, IT, and manufacturing. The scams start with phishing emails that exploit Microsoft Office vulnerabilities, leading to the download and execution of SmokeLoader malware, that communicates with its command and control server. It then downloads plugins to capture key data. Cybersecurity researchers at FortiGuard Labs discovered and blocked the threat.
BootKitty UEFI malware exploits LogoFAIL to infect Linux systems
The ‘Bootkitty’ Linux UEFI bootkit, an in-development malware primarily targeting specific Ubuntu versions, exploits the LogoFAIL flaw to attack computers running vulnerable firmware. Bootkitty uses