> SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 117
[AUTHOR: Pierluigi Paganini]
[DATE: 04/10/2026 14:00]
[LANGUAGE: EN]
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape
Malware Newsletter
Lunex Unmasked: A New Information Stealer Deployed Through BYOVD
Storm-3168: Agentic-driven cloud attacks using compromised service principals
Don’t Call Us, We’ll Call Your APIs | TraderTraitor Backdoors Resurface on Victim With No Crypto Ties
PhantomSub: Malicious npm Campaign Secretly Adds Users to WhatsApp Spam Channels
Warlock Ransomware Attackers Hit Water and Telecom Operators
Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix
Star Blizzard refines phishing and malware delivery with the RedFlick technique
China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor
CloudSyncD: a two-stage macOS backdoor that hides a phished password in zero-width Unicode
SC WordPress Malware: A Self-Healing Mesh of Loaders, Drop-Ins, and a Blockchain-Controlled Backdoor
A Hybrid Approach to Malware Detection: Integrating Few-Shot Model-Agnostic Meta-Learning with Autoencoders
Characterizing and Codifying Malware Sophistication
Joint Trust-Aware Topology Adaptation and Resource-Constrained Patching for Malware Containment in the Social Internet of Things
HFS-SVE: A Hybrid Feature Selection and Soft Voting Ensemble for Android Malware Detection
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
Pierluigi Paganini
(SecurityAffairs – hacking, newsletter)