The threat actor known as Water Saci is actively evolving its
tactics, switching to a sophisticated, highly layered infection
chain that uses HTML Application (HTA) files and PDFs to propagate
via WhatsApp a worm that deploys a banking trojan in attacks
targeting users in Brazil. The latest wave is characterized by the
attackers shifting from PowerShell to a Python-based variant that
spreads the
Read more https://thehackernews.com/2025/12/brazil-hit-by-banking-trojan-spread-via.html

