Scam papers served. [Research Saturday]

Scam papers served. [Research Saturday]

⁠⁠⁠Thomas Elkins⁠⁠⁠, SOC L3 Analyst from ⁠⁠⁠BlueVoyant⁠⁠⁠, is discussing "Unpacking Augmented Marauder’s Multi-Pronged Casbaneiro Campaigns." BlueVoyant researchers uncovered a large-scale phishing campaign by a Brazil-linked threat group targeting Spanish-speaking users across Latin America and Europe, using fake judicial summons emails, WhatsApp attacks, ClickFix tactics, and email phishing to spread the Casbaneiro banking trojan through the Horabot malware framework. The campaign uses sophisticated evasion methods including password-protected PDFs, dynamically generated ZIP filenames, anti-sandbox checks, fileless execution, and customized phishing lures to bypass security tools while turning infected systems into self-propagating botnets that hijack Outlook and webmail accounts to spread further attacks. Researchers say the operation highlights how the Augmented Marauder group (also known as Water Saci) is rapidly evolving its malware ecosystem, combining WhatsApp automation, dynamic phishing infrastructure, and advanced banking malware delivery into a highly adaptable, multi-pronged cybercrime operation. The research and executive brief can be found here: ⁠Unpacking Augmented Marauder’s Multi-Pronged Casbaneiro Campaigns⁠

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(3735)

The odds were classified.

The odds were classified.

Polymarket traders win big on U.S. military insider information. Slovakia deactivates speed cameras with Russian backdoors. TikTok pays $400 million to settle kids' privacy allegations. Hackers infect...

24 Aug 30min

Building a secure space internet. [T-Minus: Space-Cyber Briefing]

Building a secure space internet. [T-Minus: Space-Cyber Briefing]

As space infrastructure has continued to expand, developing secure space systems has become just as important as launching the spacecraft themselves. In this week's episode, host Maria Varmazis sits ...

23 Aug 24min

A RAT in the spreadsheet. [Research Saturday]

A RAT in the spreadsheet. [Research Saturday]

Today we are joined by Aaron Beardslee, Manager of Threat Research at Securonix, discussing "Analyzing SHEET#CREEP: SHEETCREEP is up again with different config obfuscation." Securonix researchers hav...

22 Aug 29min

The guest nobody invited.

The guest nobody invited.

CISA orders patching of TrueConf Server vulnerabilities. LockBit threatens release of stolen banking data. Researchers disclose a critical type confusion vulnerability in a Node.js library. A new Agen...

21 Aug 31min

The robots have gone bananas.

The robots have gone bananas.

Federal agencies warn of an active campaign targeting critical infrastructure. Citrix races to patch critical NetScaler flaws. More than 50,000 exposed Stripe API keys raise fraud concerns. Black Hat ...

20 Aug 31min

Hackers hiding in plain sight.

Hackers hiding in plain sight.

Medusa’s reach grows. Cl0p expands its victim list. The DOJ charges 17 alleged Iranian hackers. CISA sounds the alarm on four exploited vulnerabilities. TWINLOOT hides in plain sight inside Microsoft ...

19 Aug 28min

Fake it till you exfiltrate it.

Fake it till you exfiltrate it.

A fake consultancy fronts an alleged Chinese spy campaign. Meta heads to court over claims it hooked young users. Researchers crack the mystery behind the French EncroChat hack. CISA warns ransomware ...

18 Aug 28min

Please hold while we decide.

Please hold while we decide.

Internal policy conflicts hamper U.S. military AI leadership. Clop claims GE, Philips and Shell. Attackers actively probe internet-facing GeoServer instances. “The Hatman” offers millions of alleged e...

17 Aug 28min

Populärt inom Politik & nyheter

aftonbladet-krim
p3-krim
aftonbladet-daily
rss-expressen-dok
flashback-forever
svenska-fall
rss-vad-fan-hande
rss-sanning-konsekvens
rss-krimreportrarna
motiv
svd-ledarredaktionen
rss-krimstad
spar
rss-frandfors-horna
politiken
rss-flodet
fordomspodden
krimmagasinet
grans
olyckan-inifran