New ‘LucidRook’ malware used in targeted attacks on NGOs, universities

2026-04-10T01:23:25Z8f81250c18ca14819945b4fbabf63c3828ad1da7e7514d705311b37c21398747
Adobe AcrobatBPO compromiseCISAChromeDevice Bound Session CredentialsIvanti EPMMJoomlaLucidRookMagentoPhaaSSmart SliderUNC6783VENOMWordPressbrowser protectioncredential theftcryptocurrency theftinfostealermalwarephishingplugin compromiseransomwaresession cookie theftsupply-chain compromisezero-day

What happened

A batch of high-impact incidents and trends: a new Lua-based malware family “LucidRook” is being used in targeted spear-phishing attacks against NGOs and universities in Taiwan; a previously undocumented phishing‑as‑a‑service (VENOM) is harvesting C‑suite Microsoft credentials; Dutch healthcare vendor ChipSoft suffered a ransomware outage; attackers have been exploiting an Adobe Acrobat Reader zero‑day since at least December; Bitcoin Depot lost ~$3.67M from wallet theft; Smart Slider 3 Pro updates were hijacked to push backdoored WordPress/Joomla packages; nearly 100 Magento stores had card‑s

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
8f81250c18ca14819945b4fbabf63c3828ad1da7e7514d705311b37c21398747
Enrichment time
2026-04-10T01:23:25Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · New ‘LucidRook’ malware used in targeted attacks on NGOs, universities · Baitaphish