Source |
Malwarebytes Labs |
Identifiant |
1600364 |
Date de publication |
2020-03-16 15:00:00 (vue: 2020-03-16 16:01:28) |
Titre |
APT36 jumps on the coronavirus bandwagon, delivers Crimson RAT |
Texte |
We look at a spear phishing attack from APT36, an Advanced Persistent Threat group posing as the government of India and offering guidance on coronavirus. Instead, users are infected with a Crimson RAT that steals data.
Categories:
Threat analysis
Tags: APTAPT36coronaviruscoronavirus malwarecovid-19credential stealercrimson ratexploitexploitsinfo-stealermacromalicious macromalwarenation-state attackratremote administration toolSocial Engineeringspear phishingspear phishing attacktransparent tribe
(Read more...)
|
Notes |
|
Envoyé |
Oui |
Condensat |
19credential administration advanced analysis appeared apt36 aptapt36coronaviruscoronavirus are attack attackratremote attacktransparent bandwagon categories: coronavirus crimson data delivers engineeringspear first from government group guidance india infected instead jumps labs look macromalwarenation malwarebytes malwarecovid more offering persistent phishing phishingspear posing post rat ratexploitexploitsinfo read spear state stealercrimson stealermacromalicious steals tags: threat toolsocial tribe users |
Tags |
Threat
|
Stories |
APT 36
|
Move |
|