Researchers at anti-virus firm F-Secure on Thursday discovered a new malware campaign on Twitter. A large number of fake accounts were tweeting messages containing a shortened link that when clicked, attempted to use a Java exploit to install a combination keylogger and banking trojan. The tweets contained the text "haha this is the funniest video ive ever seen" along with popular hashtags and celebrity names. After discovering the campaign, F-secure researchers reported the shortened link to bit.ly staff, who promptly shut it down. The malicious site is still running, but users are no longer being redirected to it via Twitter. — AM
Vulnerable Apache NiFi implementations are being targeted in new attacks deploying the Kinsing cryptomining malware, as indicated by the significant increase in HTTP requests for "/nifi" on May 19, according to The Hacker News.
Numerous fraudulent websites masquerading as legitimate software, including ChatGPT, Gimp, AstraChat, and Go To Meeting, have been used in a new RomCom malware campaign by Cuba ransomware affiliate Void Rabisu, also known as Tropical Scorpius, from December 2022 to April 2023, which was mostly targeted at Eastern Europe, according to BleepingComputer.