Poseidon is a malware family tracked across 3 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed December 11, 2025; most recent activity June 10, 2026.
Poseidon is a malware family referenced in relation to a North Korea–linked hacking operation that uses legitimate advertising networks to distribute its payloads. The use of Naver and Google Ads demonstrates a growing trend of threat actors leveraging mainstream online platforms to broaden reach and evade early detection, making Poseidon notable for its scalable distribution tactics and persistent relevance in threat landscapes.
Hackers are exploiting macOS users through weaponized DMG files that masquerade as legitimate software installers. This tactic leverages the misconception that Apple devices are immune to malware, allowing attackers to…
A North Korea-linked hacking group, Konni, has executed a malware distribution campaign by exploiting advertising systems of Naver and Google. The campaign is categorized as an advanced persistent threat (APT) and is…
Malwarebytes has launched a new enhanced scan engine for Mac users on December 11, 2025. This update introduces new scan options and external drive scanning capabilities to better detect and block threats such as…