SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 117

Pierluigi Paganini October 04, 2026

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape

Malware Newsletter

Lunex Unmasked: A New Information Stealer Deployed Through BYOVD  

Storm-3168: Agentic-driven cloud attacks using compromised service principals  

Don’t Call Us, We’ll Call Your APIs | TraderTraitor Backdoors Resurface on Victim With No Crypto Ties  

PhantomSub: Malicious npm Campaign Secretly Adds Users to WhatsApp Spam Channels  

Warlock Ransomware Attackers Hit Water and Telecom Operators  

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix

Star Blizzard refines phishing and malware delivery with the RedFlick technique  

China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor

CloudSyncD: a two-stage macOS backdoor that hides a phished password in zero-width Unicode

SC WordPress Malware: A Self-Healing Mesh of Loaders, Drop-Ins, and a Blockchain-Controlled Backdoor     

A Hybrid Approach to Malware Detection: Integrating Few-Shot Model-Agnostic Meta-Learning with Autoencoders

Characterizing and Codifying Malware Sophistication

Joint Trust-Aware Topology Adaptation and Resource-Constrained Patching for Malware Containment in the Social Internet of Things

HFS-SVE: A Hybrid Feature Selection and Soft Voting Ensemble for Android Malware Detection

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)



you might also like

leave a comment