Wednesday, 30 April 2025
25.7 C
Singapore
29.6 C
Thailand
19.7 C
Indonesia
28.1 C
Philippines

ESET reveals new threat report spotlighting sophisticated cyber threats

ESET's most recent Threat Report highlights emerging cyber threats like AI-impersonating infostealers and deepfake technologies, covering the period from December 2023 to May 2024.

ESET, a leading player in the cybersecurity industry, has released its latest Threat Report, which encompasses findings from December 2023 to May 2024. This extensive report details key trends in the cybersecurity landscape, observed through ESET’s comprehensive telemetry and expert analyses.

Escalating dangers: Infostealers and deepfake technologies

The report underscores an alarming escalation in infostealers that are masquerading as generative AI tools like OpenAI’s Sora and Google’s Gemini. These deceptive tactics lure individuals into downloading harmful software. Furthermore, a novel mobile malware known as GoldPickaxe has been discovered, which can pilfer facial recognition data to generate deepfake videos. These forgeries are subsequently utilised by fraudsters to authenticate illicit financial transactions. Notably, GoldPickaxe has victimised users across Southeast Asia through region-specific malicious applications affecting both Android and iOS devices.

Increased exploitation in gaming and WordPress

The gaming sector has also been compromised, with pirated video games and cheating aids found to harbour infostealer malware, including Lumma Stealer and RedLine Stealer. Notably, RedLine Stealer witnessed a significant spike in detections in the first half of 2024, particularly in Spain, Japan, and Germany, with activities exceeding those recorded in the second half of 2023 by a third.

The Balada Injector gang continues to exploit WordPress plugin vulnerabilities, affecting over 20,000 websites and generating over 400,000 hits as per ESET telemetry. This persistent exploitation underscores the ongoing vulnerability of web platforms.

The evolving ransomware landscape

The ransomware landscape has witnessed significant shifts, particularly with the disruption of LockBit, a previously dominant ransomware group. Following Operation Chronos, a global law enforcement operation carried out in February 2024, LockBit has been substantially weakened. Nonetheless, subsequent attacks have seen other groups using the leaked LockBit builder to perpetrate ransomware attacks, indicating that the threat from ransomware remains potent.

In-depth analysis of server-side attacks

Additionally, ESET researchers have conducted a thorough investigation into one of the most advanced server-side malware campaigns, involving the Ebury group. This malware, targeting servers operating Linux, FreeBSD, and OpenBSD, has compromised close to 400,000 servers, with more than 100,000 still affected as of late 2023.

Hot this week

xAI’s Grok chatbot now lets you ask questions about what you see

Grok’s new Vision tool lets iPhone users ask questions about what they see. Updates also add real-time voice search and memory features.

Bitdefender launches GravityZone PHASR to combat stealthy endpoint threats

Bitdefender unveils GravityZone PHASR, a dynamic endpoint security tool that reduces attack surfaces using behaviour-based automation.

StarHub celebrates 25 years of connection and innovation

StarHub celebrates 25 years of connecting Singapore, marking the milestone with island-wide festivities, giveaways, and new entertainment experiences.

OpenAI introduces a new lightweight deep research tool for ChatGPT users

OpenAI adds a faster, lightweight deep research tool to ChatGPT, making it easier for users to access web-based summaries and reports.

POCO launches entry-level C71 smartphone in Singapore with premium features

POCO launches the budget-friendly C71 smartphone in Singapore, offering premium design, enhanced cameras, and smooth performance at S$109.

Nvidia releases another GPU fix to stop crashes on RTX 50-series

Nvidia released hotfix 576.26, its fifth GPU driver update in recent months, to fix RTX 50-series crashes, game bugs, and DisplayPort issues.

You have until June 30 to update your old LG phone

LG will shut down its phone update servers and LG Bridge software on June 30, 2025, marking the end of support for older LG phones.

Duolingo announces shift to AI, will reduce contractor roles

Duolingo shifts to an AI-first model, reducing contractors and reshaping teams to speed up learning and content creation across the platform.

Audio-Technica introduces the ATH-R30x: A budget-friendly reference headphone for music lovers

Audio-Technica launches ATH-R30x, a budget-friendly open-back headphone tuned for creators and music lovers. It is priced at just S$139.

Related Articles

Popular Categories