The WailingCrab malware has evolved to increase its stealth and detection evasion by using MQTT protocol, which is not commonly used by malware and can easily blend into legitimate IoT traffic. The malware, delivered via spam campaigns and hosted on Discord, has a loader, injector, downloader, and backdoor components. Security precautions such as up-to-date antivirus software, patching, and added surveillance on MQTT protocol use are recommended to keep this sophisticated malware at bay.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.