Oyster Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
November 2, 2025
Last Seen
August 17, 2026

The provided article set does not mention an Oyster malware family.

Overview

The provided article set does not mention an Oyster malware family. Instead, it discusses Rhysida ransomware being deployed via fake Microsoft Teams advertisements, highlighting how threat actors abuse legitimate collaboration tools and ad ecosystems to deliver ransomware.

Related Threat Clusters

Recent Intelligence Reports

  • C2Looper Backdoor Uses GitHub for C2 | ThreatLabz - Zscaler, Inc. — Zscaler · August 17, 2026
  • Two members of criminal hacking group plead guilty to £39m TfL hack — Independent · June 22, 2026
  • Microsoft shuts down illegal code — Theregister · May 19, 2026
  • Cybercrime service disrupted for abusing Microsoft platform to sign malware — Bleepingcomputer · May 19, 2026
  • Microsoft disrupts cybercrime service that abused software verification systems en masse — Cyberscoop · May 19, 2026
  • Microsoft Takes Down Fox Tempest for Providing Ransomware — Infosecurity-Magazine · May 19, 2026
  • Increased stealth integrated into flexible pkr_mtsi malware loader — Scworld · January 8, 2026
  • Versatile Malware Loader pkr_mtsi Delivers Diverse Payloads — Infosecurity-Magazine · January 7, 2026

CVSS v3.1 Breakdown