One Article Review

Accueil - L'article:
Source CSO.webp CSO
Identifiant 8297971
Date de publication 2023-01-04 15:19:00 (vue: 2023-01-05 00:05:56)
Titre Attackers use stolen banking data as phishing lure to deploy BitRAT
Texte In a case that highlights how attackers can leverage information from data breaches to enhance their attacks, a group of attackers is using customer information stolen from a Colombian bank in phishing attacks with malicious documents, researchers report. The group, which might have been responsible for the data breach in the first place, is distributing an off-the-shelf Trojan program called ​​BitRAT that has been sold on the underground market since February 2021.Stolen data used to add credibility to future attacks Researchers from security firm Qualys spotted the phishing lures that involved Excel documents with malicious documents but appeared to contain information about real people. Looking more into the information, it appeared the data was taken from a Colombian cooperative bank. After looking at the bank's public web infrastructure, researchers found logs that suggested the sqlmap tool was used to perform an SQL injection attack. They also found database dump files that attackers created.To read this article in full, please click here
Envoyé Oui
Condensat 2021 about add after also appeared article attack attackers attacks bank banking been bitrat breach breaches but called can case click colombian contain cooperative created credibility customer data database deploy distributing documents dump enhance excel february files firm first found from full future group has have here highlights how information infrastructure injection involved leverage logs looking lure lures malicious market might more off people perform phishing place please program public qualys read real report researchers responsible security shelf since sold spotted sql sqlmap stolen suggested taken tool trojan underground use used using web which ​​bitrat
Tags Data Breach Tool
Stories
Notes
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: