SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 89

Pierluigi Paganini March 22, 2026

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape

Malware Newsletter

New Payload ransomware – malware analysis  

DRILLAPP: new backdoor targeting Ukrainian entities with possible links to Laundry Bear

When Trusted Websites Turn Malicious: WordPress Compromises Advance Global Stealer Operation

AI Coding Tools Under Fire: Mapping the Malvertising Campaigns Targeting the Vibe Coding Ecosystem  

Suspected China-Based Espionage Operation Against Military Targets in Southeast Asia

Evil evolution: ClickFix and macOS infostealers

RondoDox Botnet: From Zero to 174 Exploited Vulnerabilities  

The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors  

Perseus: DTO malware that takes notes  

Evasive Intelligence: Lessons from Malware Analysis for Evaluating AI Agents

Synergistic Directed Execution and LLM-Driven Analysis for Zero-Day AI-Generated Malware Detection

Representation-Centric Approach for Android Malware Classification: Interpretability-Driven Feature Engineering on Function Call Graphs

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)



you might also like

leave a comment