The invisible passenger in your car

2026-08-25T08:51:45Z37da806b8401bce9771b1bcdd448b157b87f7cda1892b0c08a73e72ee805017c
.NETAPTAndroid malwareArmored LikhoCoolClientDNS tunnelingGoogle Apps Script C2Head MareHoneyMyteKerberoastingMFA bypassPhantomCorePhantomGraphTelegram theftTrueConfadversary-in-the-middleadwareautomotive head unitscloud platformscyber espionagekernel rootkitnetwork anomaly detectionphishingproxy botnet

What happened

Kaspersky Securelist feed covering August 2026 threat intelligence, including Android malware delivered via legitimate automotive head-unit software, a HoneyMyte CoolClient kernel-level rootkit, Armored Likho espionage targeting Telegram data, Head Mare exploitation of unpatched TrueConf servers, Google Apps Script and DNS-based C2, adversary-in-the-middle phishing bypassing MFA through cloud platforms, and threat statistics and detection guidance.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
kaspersky_securelist
Record identifier
37da806b8401bce9771b1bcdd448b157b87f7cda1892b0c08a73e72ee805017c
Enrichment time
2026-08-25T08:51:45Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.