Angry Birds: Toy Ghouls’ new toys
2026-09-13T08:51:47Z•efd4a83c99739678f8d34544867ab5274e202655989d2bea43451ed4f2a3b5a0
APTAfricaAndroid malwareDNS-based C2ElementFinTechGoogle Apps ScriptICSIsraelJavaScriptMQTTMatrixMiddle EastNode.jsTrueConfWindowsadware masqueradingaviationbackdoorcommand-and-controlcyber-espionageindustrial control systemskernel rootkitmalwareproxy botnet
What happened
Kaspersky Securelist reports covering August–September 2026 threat activity, including new backdoors and C2 channels, APT campaigns targeting aviation, finance, industrial and Middle Eastern organizations, malware disguised as adware or legitimate software, Android proxy-botnet activity, kernel-level rootkits, exploitation of unpatched TrueConf servers, and Google Apps Script/DNS-based C2 evasion. The collection includes both targeted espionage campaigns and broader vulnerability and industrial-threat reporting.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- efd4a83c99739678f8d34544867ab5274e202655989d2bea43451ed4f2a3b5a0
- Enrichment time
- 2026-09-13T08:51:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.