Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?
Compromised Websites Deliver “BadSpace” Backdoor via Fake Browser Updates: A Cybersecurity Nightmare
Compromised websites are being exploited to deliver a Windows backdoor called BadSpace disguised as fake browser updates. This multi-stage attack uses infected websites and fake pop-ups to deploy the malware, which can take screenshots, execute commands, and more. Beware of unexpected browser update prompts—they might…

Hot Take:
Why settle for just a bad day on the internet when you can also get a malware infection disguised as a browser update? Introducing BadSpace: the gift that keeps on giving (and taking screenshots).
Key Points:
- Compromised websites delivering BadSpace malware via fake browser updates.
- Multi-stage attack chain involving infected websites, C2 servers, and JScript downloaders.
- Attack begins with compromised WordPress sites that collect user data on first visit.
- Malware capable of taking screenshots, executing commands, and stealing data.
- Connections to known SocGholish (FakeUpdates) malware identified.