One Article Review

Accueil - L'article:
Source Trend.webp TrendLabs Security
Identifiant 250655
Date de publication 2016-11-09 13:00:34 (vue: 2016-11-09 13:00:34)
Titre Pawn Storm Ramps Up Spear-phishing Before Zero-Days Get Patched
Texte The effectiveness of a zero-day quickly deteriorates as an attack tool after it gets discovered and patched by the affected software vendors. Within the time between the discovery of the vulnerability and the release of the fix, a bad actor might try to get the most out of his previously valuable attack assets. This is exactly what we saw in late October and early November 2016, when the espionage group Pawn Storm (also known as Fancy Bear, APT28, Sofacy, and STRONTIUM) ramped up its spear-phishing campaigns against various governments and embassies around the world.  In these campaigns, Pawn Storm used a previously unknown zero-day in Adobe's Flash (CVE-2016-7855, fixed on October 26, 2016 with an emergency update) in combination with a privilege escalation in Microsoft's Windows Operating System (CVE-2016-7255) that was fixed on November 8, 2016. Post from: Trendlabs Security Intelligence Blog - by Trend Micro Pawn Storm Ramps Up Spear-phishing Before Zero-Days Get Patched
Envoyé Oui
Condensat 2016 7255 7855 actor adobe affected after against also apt28 around assets attack bad bear before between blog campaigns combination cve day days dayâ quickly deteriorates discovered discovery early effectiveness embassies emergency escalation espionage exactly fancy fix fixed flash from: get gets governments group his intelligence its known late micro microsoft might most november october onâ november operating out patched pawn phishing post previously privilege ramped ramps release saw security sofacy software spear storm strontium system these time tool trend trendlabs try unknown update used valuable various vendors vulnerability what when windows within world zero â in
Tags
Stories APT 28
Notes
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: