119 Edge-Erweiterungen mit versteckter Malware entfernt

119 Erweiterungen aus dem offiziellen Edge-Add-ons-Store verbanden nützliche Alltagsfunktionen mit Schadcode, der in gewöhnlichen Bild- und Schriftartdateien eingebettet war — unsichtbar für automatische Scanner. Insgesamt wurden die Erweiterungen bis zu 2,6 Millionen Mal installiert. Was dahintersteckt, wie der Angriff technisch funktionierte und was Betroffene jetzt tun sollten.

https://www.all-about-security.de/119-edge-erweiterungen-mit-versteckter-malware-entfernt/

#microsoft #edge #malware

119 Edge-Erweiterungen mit versteckter Malware entfernt: Was Sie wissen müssen

119 gefährliche Edge-Erweiterungen wurden entfernt. Lesen Sie über die dahintersteckende Angriffskampagne und Sofortmaßnahmen.

All About Security Das Online-Magazin zu Cybersecurity (Cybersicherheit). Ransomware, Phishing, IT-Sicherheit, Netzwerksicherheit, KI, Threats, DDoS, Identity & Access, Plattformsicherheit
#NPM: two hijacked npm packages:
* html-to-gutenberg
* fetch-page-assets
and a cluster of Go packages use VS Code Tasks to deploy #Python Infostealer #malware:
#SoftwareSupplyChainSecurity
👇
https://thehackernews.com/2026/06/hijacked-npm-and-go-packages-use-vs.html
Hijacked npm and Go Packages Use VS Code Tasks to Deploy Python Infostealer

Researchers found hijacked npm packages and 16 Go packages using fake font files and VS Code tasks to deploy a Python infostealer.

The Hacker News
SystemBC Malware: How the Coroxy Proxy Backdoor Targets Windows

SystemBC (Coroxy) is a Windows proxy malware, backdoor, and loader. Learn how it tunnels traffic, persists, and powers ransomware attacks.

USB contraffatti made in China nelle reti classificate delle Forze di Autodifesa giapponesi: un anno di spionaggio silenzioso

Nikkei rivela come chiavette USB cinesi contraffatte, distribuite durante le operazioni di soccorso post-terremoto, abbiano compromesso per quasi un anno sistemi classificati delle Forze di Autodifesa Terrestre giapponesi. Il malware, riconducibile ad APT di Stato cinesi, ha colpito oltre 50 computer tra reti operative e classificate prima della scoperta.

https://insicurezzadigitale.com/usb-contraffatti-made-in-china-nelle-reti-classificate-delle-forze-di-autodifesa-giapponesi-un-anno-di-spionaggio-silenzioso/

🚨 PHISHING DETECTED 🚨

🔗 Suspicious URL: onchains[.]my
🔍 Analysis at: https://phishdestroy.io/domain/onchains.my/

#ProtectCrypto #malware #cybersec #PhishingScam #ScamPrevention

🚨 PHISHING DETECTED 🚨

🔗 Suspicious URL: thearcofohio[.]org
🔍 Analysis at: https://phishdestroy.io/domain/thearcofohio.org/

#NFT #malware #scamalert

🚨 PHISHING DETECTED 🚨

🔗 Suspicious URL: redotpayaccounts[.]blogspot[.]com
🔍 Analysis at: https://phishdestroy.io/domain/redotpayaccounts.blogspot.com/

#PhishingScam #ScamPrevention #CryptoDrainers #malware #scamalert #AntiPhishing

🚨 PHISHING DETECTED 🚨

🔗 Suspicious URL: redotpay53[.]blogspot[.]com
🔍 Analysis at: https://phishdestroy.io/domain/redotpay53.blogspot.com/

#CryptoAwareness #WalletDrainers #malware

@anyGould @corbet +1

Give every affected IP (allocation) / ASN a redirect telling them that they've been blocked due to said #malware on their systems and that they've to remove it!

https://mastodon.social/@kkarhan/116834153763325544

@corbet @lwn If that's the case then the only valid option is to go " #fail2ban " - Style on said IPs and automate #AbuseReports to said ISPs.

- Cuz even lazy ones like #DTAG in #Germany will forcibly disconnect customers for running #malware.

I for once can guarantee this shit ain't on my devices, because said malware won't run on them!