The invisible passenger in your car
2026-08-25T08:51:45Z•37da806b8401bce9771b1bcdd448b157b87f7cda1892b0c08a73e72ee805017c
.NETAPTAndroid malwareArmored LikhoCoolClientDNS tunnelingGoogle Apps Script C2Head MareHoneyMyteKerberoastingMFA bypassPhantomCorePhantomGraphTelegram theftTrueConfadversary-in-the-middleadwareautomotive head unitscloud platformscyber espionagekernel rootkitnetwork anomaly detectionphishingproxy botnet
What happened
Kaspersky Securelist feed covering August 2026 threat intelligence, including Android malware delivered via legitimate automotive head-unit software, a HoneyMyte CoolClient kernel-level rootkit, Armored Likho espionage targeting Telegram data, Head Mare exploitation of unpatched TrueConf servers, Google Apps Script and DNS-based C2, adversary-in-the-middle phishing bypassing MFA through cloud platforms, and threat statistics and detection guidance.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- 37da806b8401bce9771b1bcdd448b157b87f7cda1892b0c08a73e72ee805017c
- Enrichment time
- 2026-08-25T08:51:45Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.