Foul play: Fake FIFA websites target soccer fans looking for World Cup tickets, merchandise
2026-05-23T08:51:39Z•b583903ded0f968d7af30b06e3bf9b0f19f7d7dfd5d7808f9c7b2fda68993783
ai-assisted-malwareandroid-malwareaptcallphantomcloud-securityedr-killersfrostyneighborgopherwhispermobile-securityngatephishingprivacypromptspyransomwarescamsscarcruftsednitsupply-chaintrojanized-softwarewebworm
What happened
ESET WeLiveSecurity roundup (Mar–May 2026) highlighting active threat research and consumer alerts: multiple APT campaigns (new and resurgent actors such as Webworm, FrostyNeighbor, GopherWhisper, ScarCruft, Sednit), supply‑chain compromises (trojanized Windows/Android games and an NFC payment app carrying a new NGate variant), Android malware and fraudulent Play Store apps (PromptSpy — GenAI‑assisted Android malware; CallPhantom fake call‑log apps), EDR‑killer techniques abusing vulnerable drivers, ransomware extortion/leak‑site tactics, widespread phishing/scams (including fake FIFA World‑C️
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- eset_welivesecurity
- Record identifier
- b583903ded0f968d7af30b06e3bf9b0f19f7d7dfd5d7808f9c7b2fda68993783
- Enrichment time
- 2026-05-23T08:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.