SourTrade Malvertising: Browsers Build Malware in Pieces
🟠High | Source: The Hacker News A malvertising campaign called SourTrade, active since late 2024, tricks victims’ browsers into assembling a Windows executable from separate pieces rather than downloading a single malicious file. It impersonates well-known trading platforms such as TradingView, Solana, and Luno to target retail traders, using the legitimate Bun JavaScript runtime as its payload base. This fragmented delivery approach is designed to evade security tools that inspect complete files or block known malicious URLs. ...