Guildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)
LowSANS Internet Storm Center·
Reproduced in full under licence from SANS Internet Storm Center. © SANS Internet Storm Center.
Read at isc.sans.edu ↗Established Source
At a glance
- Severity
- Lowfrom category and source signals; no CVSS referenced
- Exploitation
- No vulnerabilities referenced
- Vulnerabilities
- None referenced
- Vendors & products
- None named
- Threat actors & malware
- None named
- Industries
- Not industry-specific
- Coverage
- 1 outlet· first seen 2026-09-01 21:30 UTC
- Priority
- 30/100Source tier, category, exploitation and corroboration. Not a risk score for your environment.
Coverage
One outlet has carried this so far.
2026-09-01 21:30 UTC
Related stories
- JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
The Hacker News · 2026-09-07
- Critical MikroTik Vulnerability - Patch Now, (Sun, Sep 6th)
SANS Internet Storm Center · 2026-09-06
- Attackers conceal phishing lures using invisible Unicode characters
BleepingComputer · 2026-09-06
- Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
The Hacker News · 2026-09-06
- Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
The Hacker News · 2026-09-05