S1deloader, is one nasty infostealer:

FTA: "steals user credentials, emulates human behavior to artificially boost videos and other content engagement, assesses the value of individual accounts (such as identifying corporate social media admins), mines for BEAM cryptocurrency, and propagates the malicious link to the user's followers".

https://thehackernews.com/2023/02/new-s1deload-malware-hijacking-users.html

#malware #infostealer #crytpomining #socialmedia

New S1deload Malware Hijacking Users' Social Media Accounts and Mining Cryptocurrency

A new information stealer is hijacking Facebook and YouTube accounts to mine cryptocurrency. Bitdefender calls it S1deload Stealer.

The Hacker News

🚨 Found a novel #hack today. Anyone know of a #tool that dumps video card memory? Just found this #nugget in a thread: *Using #GPU #Memory #poisoning to drop a payload https://gitlab.com/ORCA000/gp*

Never thought to look for a tool like this...a friend and I did some quick #GoogleFu and came up with only a few candidates that would need a lot of re-engineering to actually dump a #forensic copy of a VCs memory. Seems like a rather difficult task at the moment, making this novel attack I found even more dangerous.

Thoughts? Ideas? Anyone working on a tool for dumping VC memory? Anyone seen this in the wild? I am very curious about this. With all the video cards out there being used for #crytpomining and #ML operations, this could be the next big threat.

ORCA / GP · GitLab

gpu poisoning; hide the payload inside the gpu memory

GitLab