New ‘LucidRook’ malware used in targeted attacks on NGOs, universities
2026-04-10T01:23:25Z•8f81250c18ca14819945b4fbabf63c3828ad1da7e7514d705311b37c21398747
Adobe AcrobatBPO compromiseCISAChromeDevice Bound Session CredentialsIvanti EPMMJoomlaLucidRookMagentoPhaaSSmart SliderUNC6783VENOMWordPressbrowser protectioncredential theftcryptocurrency theftinfostealermalwarephishingplugin compromiseransomwaresession cookie theftsupply-chain compromisezero-day
What happened
A batch of high-impact incidents and trends: a new Lua-based malware family “LucidRook” is being used in targeted spear-phishing attacks against NGOs and universities in Taiwan; a previously undocumented phishing‑as‑a‑service (VENOM) is harvesting C‑suite Microsoft credentials; Dutch healthcare vendor ChipSoft suffered a ransomware outage; attackers have been exploiting an Adobe Acrobat Reader zero‑day since at least December; Bitcoin Depot lost ~$3.67M from wallet theft; Smart Slider 3 Pro updates were hijacked to push backdoored WordPress/Joomla packages; nearly 100 Magento stores had card‑s
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 8f81250c18ca14819945b4fbabf63c3828ad1da7e7514d705311b37c21398747
- Enrichment time
- 2026-04-10T01:23:25Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.