Cybercriminals in Germany increasingly use social engineering and impersonation of legitimate processes instead of pure malware techniques, as the Gen Report shows with increases of 134 percent in fake shop fraud and 160 percent in dropper malware.
Cybercriminals exploit legitimate AI chat sharing features from Claude to trick developers into manually executing malware and stealing corporate login credentials.
The FakeGit campaign distributes malware across 7,600 GitHub repositories with 14 million downloads, demonstrating the exploitation of trusted developer platforms as attack vectors.
A compromised malware delivery server exposed an AI-assisted phishing infrastructure actively deployed against end users, providing insights into operationalization processes and automation techniques.
HollowGraph uses Microsoft Graph API via the calendar feature for command-and-control communication and data exfiltration within legitimate Microsoft 365 accounts.