Remove Archiving Remove Government Remove Manufacturing
article thumbnail

Coronavirus-themed campaign targets energy sector with PoetRAT

Security Affairs

Threat actors employed the previously-undetected PoetRAT Trojan in a Coronavirus-themed campaign aimed at government and energy sectors. . docx,” they claim to be from departments from the Azerbaijan government and India’s Ministry of Defense. . ” reads the analysis published by Cisco Talos.

article thumbnail

China-linked APT10 leverages ZeroLogon exploits in recent attacks

Security Affairs

Targeted sectors include: Automotive Clothing Conglomerates Electronics Engineering General Trading Company Government Industrial Products Managed Service Providers Manufacturing Pharmaceutical Professional Services. The latest campaign has been active since mid-October in 2019 and appears to be still ongoing.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

PseudoManuscrypt, a mysterious massive cyber espionage campaign

Security Affairs

Kaspersky researchers reported that tens of thousands of devices belonging to industrial and government organizations worldwide have been hit by the PseudoManuscrypt spyware. The PseudoManuscrypt loader is delivered via a Malware-as-a-Service (MaaS) platform that distributes the malicious code in pirated software installer archives.

article thumbnail

Grandoreiro banking malware targets Mexico and Spain

Security Affairs

The campaign began in June 2022 and is still ongoing, the attacks hit organizations in multiple industries, such as Automotive, Chemicals Manufacturing, and others. The ZIP archive contains the Grandoreiro Loader module with a PDF Icon in order to lure the victim into opening it. ” reads the post published by Zscaler.

Archiving 107
article thumbnail

D-Link confirms data breach, but downplayed the impact

Security Affairs

Taiwanese manufacturer D-Link confirmed a data breach after a threat actor offered for sale on BreachForums stolen data. The threat actor is offering an archive of 1.2 The stolen data includes information for many Taiwanese government officials, as well as the CEOs and employees of the company.

article thumbnail

Kraken fileless attack technique abuses Microsoft Windows Error Reporting (WER)

Security Affairs

The.ZIP archive, titled, “Compensation manual.doc,” claims to contain information relating to worker compensation rights. The APT32 group has been active since at least 2012, it has targeted organizations across multiple industries and foreign governments, dissidents, and journalists.

Phishing 139
article thumbnail

Biometric data of 1M leaked via an unsecured Suprema owned database

Security Affairs

The 23-GB ElasticSearch archive was discovered earlier in August, data contained in the database were collected from customers utilizing BioStar 2. Data was collected by the UK Metropolitan police, small local businesses and governments globally. The archive included 27.8 Phoenix Medical – Medical products manufacturer.

Archiving 105