Cyware Weekly Threat Intelligence - May 27–31

Weekly Threat Briefing • May 31, 2024
Weekly Threat Briefing • May 31, 2024
In a bold stride towards AI accountability, NIST introduced the ARIA program to help evaluate AI technologies' real-world impacts, ensuring safety, security, and fairness. Meanwhile, OpenAI disrupted five international AI-powered disinformation campaigns, unmasking covert operations from China, Iran, Israel, and Russia that manipulated online discourse and political narratives.
In a cunning cyber scheme, cracked versions of popular software are spreading sophisticated malware cocktails. Users unknowingly download malicious installers that fetch additional threats via Telegram and Mastodon. Concurrently, a zero-day vulnerability in Check Point VPNs is under active exploitation, compromising sensitive network data. Additionally, cybercriminals targeted the Arc browser’s launch with malicious Google Ads, leading users to trojanized installers and info-stealing malware.
In a striking evolution of ransomware, SpiderX emerges as a successor to Diablo, boasting faster encryption and other functionalities, making it a formidable threat to Windows systems. Vulnerabilities in popular WordPress plugins are being exploited to inject malicious scripts and create admin accounts, affecting numerous websites. Moreover, the RedTail cryptocurrency miner has evolved, exploiting a critical vulnerability in Palo Alto Networks firewalls.