
New Malware Variants and Privacy Risks Highlighted in Cybersecurity Report
On August 25, 2026, the SANS Internet Storm Center StormCast reported on a new variant of the 'Double Cup' malware that abuses PNG files to smuggle PowerShell scripts by embedding them directly after the PNG header, requiring only a basic findstr command for extraction. The episode also highlighted a fingerprinting technique used by AliExpress, which leverages the Web Audio API to generate and record inaudible audio waveforms for system identification, raising privacy concerns despite its anti-fraud justification. Security researcher Alex Shakov discovered that expired domains previously used for DMARC error reporting could be re-registered, allowing attackers to intercept sensitive email delivery reports from major organizations. Additionally, Kaspersky identified malware pre-installed on Android-based car head units via a compromised update channel in vehicles from a Chinese manufacturer, repurposing standard Android malware as proxies and infostealers. The segment emphasized the importance of domain hygiene, periodic review of email security configurations (SPF, DKIM, DMARC), and the growing threat of malware targeting automotive systems.