ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)

A Massive Malware Campaign is Unfolding Globally, with Millions of Computers Already Infected

Over the past weekend, cybersecurity researchers at SANS Internet Storm Center (ISC) have been tracking a massive and highly sophisticated malware campaign that has already infected millions of computers worldwide. The malware, which has been dubbed “EternalStorm” by the ISC team, is spreading rapidly through a combination of social engineering tactics and exploitation of vulnerabilities in popular software.

The malware is designed to evade detection by traditional security measures and has been customized to target specific industries, including finance, healthcare, and government institutions. According to the ISC report, EternalStorm uses a unique blend of fileless malware techniques and memory-resident malware to stay hidden on infected systems, making it extremely difficult for security software to detect.

The impact of this campaign is already being felt across multiple continents, with reports of widespread disruptions to critical infrastructure and business operations. The UK’s National Cyber Security Centre (NCSC) has confirmed that EternalStorm has compromised several high-profile targets in the country, including a major bank and a hospital chain. Similar reports have emerged from other countries, including the US, Canada, and Australia.

The malware is spreading through a combination of phishing emails and exploit kits, which are designed to take advantage of known vulnerabilities in popular software such as Adobe Flash and Microsoft Office. The phishing emails are highly sophisticated, using convincing social engineering tactics to trick victims into opening malicious attachments or clicking on links that lead to compromised websites.

While the exact motivations behind the EternalStorm campaign remain unclear, cybersecurity experts believe that it may be linked to a nation-state actor or a well-funded cybercrime organization. Whatever the case, one thing is certain: this malware campaign has exposed serious weaknesses in global cybersecurity defenses and highlights the need for businesses and individuals alike to stay vigilant and up-to-date with the latest security patches.

As we continue to monitor the situation, it’s essential that users take immediate action to protect themselves against EternalStorm. This includes installing the latest security updates for all software, being cautious when opening emails or attachments from unknown sources, and using robust antivirus software to scan systems regularly. By taking these simple precautions, individuals can significantly reduce their risk of falling victim to this massive malware campaign.


Source: SANS ISC — 2026-07-06