Infostealers spread via fraudulent antivirus sites
The Hacker News reports that several fake websites offering antivirus software from Avast, Malwarebytes, and Bitdefender have been leveraged by threat actors to distribute various information-stealing malware strains.
Operators of the BLOODALCHEMY malware leveraged in intrusions against Southern and Southeast Asian government entities derived the payload from the Deed RAT trojan, which descended from the ShadowPad malware, according to The Hacker News.