Cybercrime, false invoice request from UK is the bait for BluStealerThe compressed attachment of the “Order-Urgent” email contains an exe file – the malware. The… Cybercrime, false invoice request from UK is the bait for BluStealer16 May 2023Francesco BussolettiCyber, Defence and Security The compressed attachment of the “Order-Urgent” email contains an exe file – the malware. The stolen data is exfiltrated via Telegram API.
Cybercrime, AgentTesla passes by a fake request for products from DubaiThe “Re: Revised Quotatio” email contains a zip file with an exe inside – the… Cybercrime, AgentTesla passes by a fake request for products from Dubai15 May 2023Francesco BussolettiCyber, Defence and Security The “Re: Revised Quotatio” email contains a zip file with an exe inside – the malware. It is not known how the stolen data is exfiltrated.
Cybercrime, DocuSign-themed phishing campaignA service's fake email invites the victim to open a link, that points to a… Cybercrime, DocuSign-themed phishing campaign12 May 2023Francesco BussolettiCyber, Defence and Security A service's fake email invites the victim to open a link, that points to a decoy site. Goal: Steal WordPress credentials.
Cybercrime, AgentTesla hides in the “Nieuwe bestelling – 100 STUKS ELK” emailThe lzh attachment contains an exe file: the malware. Stolen data is exfiltrated via Telegram… Cybercrime, AgentTesla hides in the “Nieuwe bestelling – 100 STUKS ELK” email11 May 2023Francesco BussolettiCyber, Defence and Security The lzh attachment contains an exe file: the malware. Stolen data is exfiltrated via Telegram API.
Cybercrime, “FQ quotations….>” carries HawkEye/MailPassView and AgentTeslaThe zip attachment contains 2 exe: "LPO Samples Xls" and "Purchase Order Details XLs": the… Cybercrime, “FQ quotations….>” carries HawkEye/MailPassView and AgentTesla10 May 2023Francesco BussolettiCyber, Defence and Security The zip attachment contains 2 exe: "LPO Samples Xls" and "Purchase Order Details XLs": the malware. AgentTesla exfiltrates stolen data via FTP.
Cybercrime, a “Purchase Order” email from Lebanon carries BlustealerThe compressed attachment contains an exe file: the malware. Stolen data is exfiltrated via Telegram… Cybercrime, a “Purchase Order” email from Lebanon carries Blustealer9 May 2023Francesco BussolettiCyber, Defence and Security The compressed attachment contains an exe file: the malware. Stolen data is exfiltrated via Telegram API.
Cybercrime, a fake “XFQ quotations” email bait for AgentTeslaThe lzh attachment contains two exe files: the same malware. Stolen data is exfiltrated by… Cybercrime, a fake “XFQ quotations” email bait for AgentTesla8 May 2023Francesco BussolettiCyber, Defence and Security The lzh attachment contains two exe files: the same malware. Stolen data is exfiltrated by FTP.
Cybercrime, the mysterious malware from Türkiye is SnakeKeylogger/StormKittyThe lnk “Alıntı 2589984” email attachment starts the infection chain by running a Powershell script.… Cybercrime, the mysterious malware from Türkiye is SnakeKeylogger/StormKitty5 May 2023Francesco BussolettiCyber, Defence and Security The lnk “Alıntı 2589984” email attachment starts the infection chain by running a Powershell script. Stolen data is exfiltrated via Telegram API.
Cybercrime, false offer of products from Türkiye bait for a mysterious malwareThe compressed attachment of the “Alıntı 2589984” email contains a lnk file, which starts the… Cybercrime, false offer of products from Türkiye bait for a mysterious malware4 May 2023Francesco BussolettiCyber, Defence and Security The compressed attachment of the “Alıntı 2589984” email contains a lnk file, which starts the chain of infection by running a Powershell script.
Cybercrime: here it comes Atomic, a new info-stealer for macOSThe malware, aka AMOS, is sold with a $1,000-a-month subscription and can be used even… Cybercrime: here it comes Atomic, a new info-stealer for macOS3 May 2023Francesco BussolettiCyber, Defence and Security The malware, aka AMOS, is sold with a $1,000-a-month subscription and can be used even by those without technical skills.