comparemela.com

Latest Breaking News On - Phishing campaign targets aviation sector - Page 1 : comparemela.com

StrRAT Masquerades as Ransomware

BankInfoSecurity Compliance @prajeetspeaks) • May 24, 2021     If the Outgoing Payments PDF is clicked, it downloads the StrRAT. (Source: Microsoft) Microsoft is warning about a spam campaign that uses an updated variant of Java-based StrRAT malware that steals confidential data while disguising itself as a ransomware infection even though it does not actually encrypt data. This remote access Trojan is infamous for its ransomware-like behavior of appending the file name extension .crimson to files without actually encrypting them, Microsoft s Security Intelligence Team said in a series of tweets on Thursday. The name extension prevents users from opening the file with a double click, enabling the attackers to go for a quick and easy extortion attempt, but Microsoft notes that users can remove the extension to recover their files.

Spear-Phishing Campaign Targets Aviation Sector

Fake Airbus emails were used as phishing lure. (Photo: Airbus) A spear-phishing campaign is targeting aviation companies, using malicious documents that deliver information-stealing malware, according to alerts from Microsoft Security Intelligence. In a series of alerts posted on Twitter, Microsoft says it has been tracking a dynamic campaign targeting the aerospace and travel sectors with spear-phishing emails that distribute an actively developed loader, which then delivers the remote access Trojan RevengeRAT, aka AsyncRAT. Microsoft notes the campaign, which has been active in recent months, involves attackers spoofing emails of legitimate organizations with lures relevant to aviation, travel or cargo. Attack Tactics

© 2024 Vimarsana

vimarsana © 2020. All Rights Reserved.