Qakbot malware’s creators ride again, despite FBI takedown

Researchers from Cisco’s Talos group have warned that the creators of the Qakbot banking Trojan, thought to have been eradicated in August, are still active. They are suspected of working on a new campaign using a variant of the ransomware threat Knight, which is delivered via phishing attacks, with a potential focus on Italian users. The group indicated that the Qakbot creators are possibly customers of the Knight ransomware service.