Remove state-of-security what-malware-service-maas
article thumbnail

Crimeware and financial cyberthreats in 2023

SecureList

A look back on the year 2022 and what to expect in 2023. Every year, as part of the Kaspersky Security Bulletin, we predict which major trends will be followed in the coming year by attackers, who target financial organizations. Analysis of forecasts for 2022. Analysis of forecasts for 2022.

article thumbnail

TrickBot gang members sanctioned after pandemic ransomware attacks

Malwarebytes

In a collaborative partnership, officials in the United States and the United Kingdom unmasked and imposed financial sanctions against seven members of the notorious Russian gang TrickBot (alias "TrickLoader"), a mainstream banking Trojan turned malware-as-a-service (MaaS) platform for other criminals.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

IT threat evolution Q3 2021

SecureList

The PyInstaller module for Windows contains a script named “Guard” Interestingly, this malware was developed for both Windows and macOS operating systems. The malware tries to spread to other hosts on the network by infecting USB drives. Another language used by WildPressure is Python. LuminousMoth is an exception.

Malware 86
article thumbnail

A look at the 2020–2022 ATM/PoS malware landscape

SecureList

During the pandemic, lockdowns forced people to stay at home and do their shopping online, which was mirrored in point-of-sale (PoS) and ATM malware activity, as certain regions saw malicious transactions drop significantly. Perpetrators continue to spread already-existing, widely used malware to attack PoS terminals and ATMs.

Malware 109
article thumbnail

IT threat evolution Q3 2022

SecureList

Rootkits are malware implants that are installed deep in the operating system. However, on one of the infected machines, we found malware that we think is probably related to CosmicStrand. This malware creates a user named “aaaabbbb” in the operating system with local administrator rights. Mobile statistics.

Malware 100
article thumbnail

Mystic Stealer

Security Boulevard

Stealers" are a kind of malware designed to run on an endpoint post-compromise, while their primary features center on the theft of user data. Stealers also bridge the realms of criminal and nation-state focus. Together with our colleagues at InQuest, we present a deep dive technical analysis of the malware.

article thumbnail

Ransomware world in 2021: who, how and why

SecureList

As the world marks the second Anti-Ransomware Day, there’s no way to deny it: ransomware has become the buzzword in the security community. Next, we dive deep into the darknet to demonstrate how cybercriminals interact with each other and the types of services they provide. And not without good reason.