The mobile malware landscape in Latin America, particularly in Brazil, has recently gained attention due to the emergence of malicious families like Brata and Amextroll, which have expanded their reach to Europe. One notable addition to this threat landscape is BrasDex, a sophisticated multi-platform malware campaign targeting Brazilian users.
The Rhysida ransomware-as-a-service (RaaS) group has swiftly transformed from an unknown entity to a well-established ransomware operation.
A new type of Android Banking Trojan, referred to as "Chameleon," has recently been discovered. This malware is unique as it appears to be a new strain and doesn't resemble any known Trojan families.
In late 2022, a ransomware family known as CatB (also called CatB99 or Baxtoy) was first detected. Since November, there have been consistent reports of their attacks, which involve using DLL hijacking via Microsoft Distributed Transaction Coordinator (MSDTC)
In December 2022, criminal forums advertised Nevada ransomware as part of a new ransomware-as-a-service affiliate program. Nevada is programmed in Rust and is compatible with Linux and 64-bit Windows