China-supported APT41 targets cloud environments including AWS, Google, Azure, and Alibaba using typosquatting techniques to hide command-and-control traffic.
The new 'Storm' infostealer bypasses local data decryption by sending browser information to attacker-controlled servers, enabling session hijacking...