CHECKLEAKED.CC

Loading

Classic site

DAILY BRIEFING

TikTok $400M FTC Settlement, Android Auto Supply-Chain Malware, npm RedC2 Backdoor

Today's briefing covers TikTok's $400 million privacy settlement, Android car head unit botnets, Trojanized npm packages, Teams phishing, and Windows IPC security.

Attackers continue to leverage trusted operational vectors, such as npm registries and legitimate update tools, to compromise endpoints and distribute backdoor implants.

Hackers infect Android car head units with proxy botnet malware

A supply-chain attack targeting Android-based car head units is leveraging a legitimate device-update application to distribute malware. Compromised automotive units are converted into proxy botnet nodes or leveraged to commit ad fraud.

  • android
  • botnet
  • malware
Read the original

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant dubbed RedC2 4.0.

  • npm
  • linux
  • malware
Read the original

New SynkLoader malware pushed in Microsoft Teams phishing campaign

A previously unknown malware strain named SynkLoader is being distributed via Microsoft Teams phishing campaigns. The malware displays a fake lock screen to harvest user credentials.

  • microsoft
  • teams
  • phishing
  • malware
Read the original

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

TikTok and parent company ByteDance agreed to a $400 million settlement with the U.S. Department of Justice and Federal Trade Commission over a 2024 lawsuit. The complaint alleged the platform violated child privacy laws by allowing kids under 13 to create accounts and ignoring parental deletion requests.

  • tiktok
  • bytedance
  • privacy
  • regulation
Read the original

Named Pipes Under Attack: Securing Windows Interprocess Communication

ThreatLocker published analysis detailing how attackers can exploit weak access controls on Windows named pipes. While designed for fast interprocess communication, insufficiently restricted pipes allow untrusted local processes to access privileged services.

  • windows
Read the original

Key takeaways

  • TikTok agreed to pay $400M to settle FTC/DoJ child privacy violations.
  • Legitimate update apps on Android-based car head units are being abused to deploy proxy botnets.
  • SynkLoader malware is being actively delivered via Microsoft Teams phishing attacks to steal credentials.
  • RedC2
  • npm
  • Linux
  • Trojanized