Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape————————————————————————————————————————————-[Undercover miner: how YouTubers get pressed into distributing SilentCryptoMiner as a restriction bypass tool](https://securelist.com/silentcryptominer-spreads-through-blackmail-on-youtube/115788/)[Ragnar Loader](https://catalyst.prodaft.com/public/report/ragnar-loader/overview)[Desert Dexter. Attacks on Middle Eastern countries](https://global.ptsecurity.com/analytics/pt-esc-threat-intelligence/desert-dexter-attacks-on-middle-eastern-countries)[Ballista — New IoT Botnet Targeting Thousands of TP-Link Archer Routers](https://www.catonetworks.com/blog/cato-ctrl-ballista-new-iot-botnet-targeting-thousands-of-tp-link-archer-routers/)[Microsoft patches Windows Kernel zero-day exploited since 2023](https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-windows-kernel-zero-day-exploited-since-2023/)[Trump Cryptocurrency Delivers ConnectWise RAT](https://cofense.com/blog/trump-cryptocurrency-delivers-connectwise-rat)[EMERGING THREATS LockBit 4.0](https://go.intel471.com/hubfs/Emerging%20Threats/Emerging%20Threat%20-%20LockBit%204.0%20-%20March%202025.pdf)[Analyzing OBSCURE#BAT: Threat Actors Lure Victims into Executing Malicious Batch Scripts to Deploy Stealthy Rootkits](https://www.securonix.com/blog/analyzing-obscurebat-threat-actors-lure-victims-into-executing-malicious-batch-scripts-to-deploy-stealthy-rootkits/) [](https://www.theregister.com/2025/03/13/deepseek_malware_code/)[DeepSeek can be gently persuaded to spit out malware code](https://www.theregister.com/2025/03/13/deepseek_malware_code/)[Captain MassJacker Sparrow: Uncovering the Malware’s Buried Treasure](https://www.cyberark.com/resources/threat-research-blog/captain-massjacker-sparrow-uncovering-the-malwares-buried-treasure)[Lazarus Strikes npm Again with New Wave of Malicious Packages](https://socket.dev/blog/lazarus-strikes-npm-again-with-a-new-wave-of-malicious-packages)[Blind Eagle: …And Justice for All](https://research.checkpoint.com/2025/blind-eagle-and-justice-for-all/)[#StopRansomware: Medusa Ransomware](https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-071a)[Lookout Discovers New Spyware by North Korean APT37](https://www.lookout.com/threat-intelligence/article/lookout-discovers-new-spyware-by-north-korean-apt37)[SuperBlack Ransomware operators exploit Fortinet Firewall flaws in recent attacks](https://securityaffairs.com/175402/cyber-crime/superblack-ransomware-exploited-fortinet-firewall-flaws.html)[Enhancing Malware Fingerprinting through Analysis of Evasive Techniques](https://arxiv.org/abs/2503.06495)[Fortinet Identifies Malicious Packages in the Wild: Insights and Trends from November 2024 Onward](https://www.fortinet.com/blog/threat-research/fortinet-identifies-malicious-packages-in-the-wild-insights-and-trends)[An Android Malware Detection Method Using Frequent Graph Convolutional Neural Networks](https://www.mdpi.com/2079-9292/14/6/1151)[Deep Defense Against Mal-Doc: Utilizing Transformer and SeqGAN for Detecting and Classifying Document Type Malware](https://www.mdpi.com/2076-3417/15/6/2978)[An Android Malware Detection Method Using Frequent Graph Convolutional Neural Networks](https://www.mdpi.com/2079-9292/14/6/1151)Follow me on Twitter: [**@securityaffairs**](https://twitter.com/securityaffairs) and [**Facebook**](https://www.facebook.com/sec.affairs) and [Mastodon](https://infosec.exchange/@securityaffairs)[**Pierluigi Paganini**](http://www.linkedin.com/pub/pierluigi-paganini/b/742/559)**(** [**SecurityAffairs**](http://securityaffairs.co/wordpress/)**–** **hacking, [malware](https://securityaffairs.com/174816/malware/security-affairs-malware-newsletter-round-35.html))**
Related Tags:
NAICS: 921 – Executive
Legislative
Other General Government Support
NAICS: 56 – Administrative And Support And Waste Management And Remediation Services
NAICS: 335 – Electrical Equipment
Appliance
Component Manufacturing
NAICS: 334 – Computer And Electronic Product Manufacturing
NAICS: 92 – Public Administration
NAICS: 33 – Manufacturing – Metal
Electronics And Other
Ricochet Chollima
ScarCruft
TEMP.Reaper
Associated Indicators:


