ESET Research discovered two remote code execution vulnerabilities in WPS Office for Windows, with one under active exploitation by the APT-C-60 group.
ESET researchers uncovered a crimeware campaign that targeted clients of prominent Czech banks. The malware used, which ESET named NGate, has the ability to relay data from victims’ payment cards.
Standard phishing delivery techniques were combined with a novel method of phishing, targeting Android and iPhone (iOS) users via PWAs, and on Android also via WebAPKs, ESET Research discovers.