SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 23

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape.————————————————————————————————————————————–[SmokeLoader Attack Targets Companies in Taiwan](https://www.fortinet.com/blog/threat-research/sophisticated-attack-targets-taiwan-with-smokeloader)[LogoFAIL Exploited to Deploy Bootkitty, the first UEFI bootkit for Linux](https://www.binarly.io/blog/logofail-exploited-to-deploy-bootkitty-the-first-uefi-bootkit-for-linux)[Horns-&Hooves campaign delivers NetSupport RAT and BurnsRAT](https://securelist.com/horns-n-hooves-campaign-delivering-netsupport-rat/114740/)[DroidBot: Insights from a new Turkish MaaS fraud operation](https://www.cleafy.com/cleafy-labs/droidbot-insights-from-a-new-turkish-maas-fraud-operation)[RedLine, A License to Steal: The Rudometov Story -& Operation Magnus](https://analyst1.com/redline-a-license-to-steal-the-rudometov-story-operation-magnus/)[Unveiling RevC2 and Venom Loader](https://www.zscaler.com/blogs/security-research/unveiling-revc2-and-venom-loader)[Ultralytics AI model hijacked to infect thousands with cryptominer](https://www.bleepingcomputer.com/news/security/ultralytics-ai-model-hijacked-to-infect-thousands-with-cryptominer/)[Meeten Malware: A Cross-Platform Threat to Crypto Wallets on macOS and Windows](https://www.cadosecurity.com/blog/meeten-malware-threat)[Quack now, pay later](https://securelist.ru/redline-stealer-in-activators-for-business-software/111241/)[Survey of Transformer-Based Malicious Software Detection Systems](https://www.mdpi.com/2079-9292/13/23/4677)[PBP: Post-training Backdoor Purification for Malware Classifiers](https://arxiv.org/abs/2412.03441)[Explainable Malware Detection through Integrated Graph Reduction and Learning Techniques](https://arxiv.org/abs/2412.03634)[MOONSHINE Exploit Kit and DarkNimbus Backdoor Enabling Earth Minotaur’s Multi-Platform Attacks](https://www.trendmicro.com/en_us/research/24/l/earth-minotaur.html)[Guess Who’s Back — The Return of ANEL in the Recent Earth Kasha Spear-phishing Campaign in 2024](https://www.trendmicro.com/en_us/research/24/k/return-of-anel-in-the-recent-earth-kasha-spearphishing-campaign.html)[BlueAlpha Abuses Cloudflare Tunneling Service for GammaDrop Staging Infrastructure](https://www.recordedfuture.com/research/bluealpha-abuses-cloudflare-tunneling-service)[Something to Remember Us By Device Confiscated by Russian Authorities Returned with Monokle-Type Spyware Installed](https://citizenlab.ca/2024/12/device-confiscated-by-russian-authorities-returned-with-monokle-type-spyware-installed/)Follow me on Twitter: [**@securityaffairs**](https://twitter.com/securityaffairs) and [**Facebook**](https://www.facebook.com/sec.affairs) and [Mastodon](https://infosec.exchange/@securityaffairs)[**Pierluigi Paganini**](http://www.linkedin.com/pub/pierluigi-paganini/b/742/559)**(** [**SecurityAffairs**](http://securityaffairs.co/wordpress/)**–** **hacking, [newsletter](https://securityaffairs.com/170041/breaking-news/security-affairs-newsletter-round-494-by-pierluigi-paganini-international-edition.html))**

Related Tags:
NAICS: 423 – Merchant Wholesalers

Durable Goods

NAICS: 42 – Wholesale Trade

NAICS: 54 – Professional

Scientific

Technical Services

NAICS: 424 – Merchant Wholesalers

Nondurable Goods

NAICS: 335 – Electrical Equipment

Appliance

Component Manufacturing

NAICS: 11 – Agriculture

Forestry

Fishing And Hunting

NAICS: 541 – Professional

Scientific

Technical Services

NAICS: 518 – Computing Infrastructure Providers

Data Processing

Web Hosting

Related Services

NAICS: 113 – Forestry And Logging

Associated Indicators: