Threat analysis

Release the Kraken: Fileless injection into Windows Error Reporting service - We discovered a new attack that injected its payload—dubbed
Inter skimming kit used in homoglyph attacks - Threat actors load credit card skimmers using a known phishing technique called homoglyph attacks.
Malspam campaign caught using GuLoader after service relaunch - We discovered a spam campaign distributing GuLoader in the aftermath of the service's relaunch
Chinese APT group targets India and Hong Kong using new variant of MgBot malware - We uncovered an active campaign in early July that we attribute to a new Chinese APT group attacking India and Hong Kong with MgBot malware.
Credit card skimmer targets ASP.NET sites - This unusual web skimmer campaign goes after sites running Microsoft's IIS servers with an outdated version of the ASP.NET framework.
Web skimmer hides within EXIF metadata, exfiltrates credit cards via image files - This credit card skimmer hides in plain sight, quite literally, as it resides inside the metadata of image files.
Multi-stage APT attack drops Cobalt Strike using Malleable C2 feature - A newly discovered APT spear-phishing attack implements several evasion techniques to drop Cobalt Strike toolkit.
Honda and Enel impacted by cyber attack suspected to be ransomware - Car manufacturer Honda has been hit by a cyber attack, according to a report published by the BBC, and later confirmed by the company in a tweet. Another similar attack, also disclosed on Twitter, hit Edesur S.A., one of the companies belonging to Enel Argentina which operates in the business of energy distribution in the...
New LNK attack tied to Higaisa APT discovered - We describe a new spearphishing campaign tied to the potential North Korean Higaisa APT group.

Select your language