No malware alert pops up when it’s hiding behind a trusted name. Vidar Stealer is now being distributed by bundling itself with a legitimate Microsoft Sysinternals tool used widely in enterprise environments. Spyware strains MOONSHINE and BADBAZAAR are being deployed in campaigns aimed at Uyghur, Tibetan, and Taiwanese individuals, as well as civil society organizations connected to them. Clicking the top result might be the worst move you make this tax season. Cybercriminals are purchasing Google Ads that link to fake QuickBooks login portals, hoping to snare stressed users searching for tax tools. Here are the top 10 highlights from the past 24 hours.