Microsoft reported threat actors poison AI chatbot queries to trick users into downloading fake utilities, then abuse ConnectWise ScreenConnect for remote access and deploy cryptocurrency miners targeting high-performance GPUs. WatchGuard observed a new Grandoreiro banking trojan campaign targeting financial institutions in Portugal and Latin America via DLL side-loading. Microsoft is tracking Storm-2697, a financially motivated group running 'The Gentlemen' ransomware-as-a-service with a Go-based encryptor that self-propagates across networks.
Tap to vote and see what everyone thinks.
Google Warns That Fake IT Workers Are Stealing Financial Data
Summary by ByteBrief