The First Ukrainian International Bank has been targeted by a malware campaign using the Emmenhtal loader and SmokeLoader malware in a complex attack. The attack begins with a malicious email and involves several stages, using tactics such as social engineering, obfuscation, and anti-analysis measures. The researchers suggest implementing endpoint detection, network monitoring, and zero-trust security frameworks as proactive cybersecurity measures against attacks.

Mandiant warns of attacks on newly-disclosed Ivanti remote takeover threat
Google’s Mandiant team has issued an alert about a remote code execution flaw in the Ivanti Connect Secure VPN platform. The vulnerability, designated CVE-2025-22457, is