#spearphishing — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #spearphishing, aggregated by home.social.
-
BigBear 2.0: la piattaforma di phishing-as-a-service che aggira anche l’MFA di Microsoft 365
CloudSEK smaschera BigBear 2.0, un kit AiTM basato su Evilginx2 che ha compromesso 258 organizzazioni in 40 paesi, rubando 474 sessioni con secondo fattore già superato e disabilitando via JavaScript le chiavi di sicurezza FIDO2/WebAuthn. -
Half of New Zealand agencies miss email security bar https://www.byteseu.com/2343451/ #AsiaPacific #BusinessEmailCompromise #Compliance #cybersecurity #DigitalIdentity #DigitalTrust #DMARC #EmailSecurity #EnergySector #infosec #MinistryOfDefence(MOD) #NationalCyberSecurityCentre(NCSC) #NewZealand #NewZealand(NZ) #NewZealandGovernment #Phishing #Proofpoint #PublicSector #Risk&Compliance #SpearPhishing #ThreatLandscape #trade
-
SilkParasite: Tracking a China-Nexus APT Across Central Asia
SilkParasite is a cyberespionage operation assessed with medium confidence as China-nexus that targeted government bodies across Central Asia. Seven remote access tool families were deployed, five of which were previously undocumented: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT. The toolset is small, modular, and professionally engineered with traces of AI-assisted development. Initial access occurred through malicious Microsoft Office documents delivered via spear-phishing, using regionally tailored lures impersonating government ministries. The operation leveraged DLL sideloading as the primary delivery mechanism and used Google Drive for command-and-control communications to hide within trusted services. Infrastructure analysis identified connections to China Unicom's backbone network, and operational patterns suggest a functioning software organization with maintained build pipelines and careful operational security.
Pulse ID: 6a86a70eb8b57f155e62d4f7
Pulse Link: https://otx.alienvault.com/pulse/6a86a70eb8b57f155e62d4f7
Pulse Author: AlienVault
Created: 2026-08-20 07:04:46Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #CentralAsia #China #CyberSecurity #Cyberespionage #DRat #Edge #Espionage #Google #Government #InfoSec #Microsoft #MicrosoftOffice #OTX #Office #OpenThreatExchange #Phishing #RAT #Rust #SideLoading #SpearPhishing #bot #AlienVault
-
https://www.europesays.com/africa/177662/ Hack-for-hire spyware campaign targets journalists in Middle East, North Africa #AccessNow #Africa #android #bitter #CommitteeToProtectJournalists #Egypt #eset #HackForHire #india #Lebanon #lookout #MiddleEast #privacy #prospy #smex #spearphishing #Spyware #UnitedArabEmirates(UAE)
-
OilRig Hackers Attacking Individuals And Organizations In The Middle East https://gbhackers.com/oilrig-hackers-middle-east-attacks/ #AdvancedPersistentThreat(APT) #MiddleEastCyberAttacks #CyberSecurityNews #CyberEspionage #spearPhishing #oilRighackers #CyberAttack #Malware