Phishing campaign throws Shade ransomware at Russians
#1
Quote:Attackers this month have revived an email phishing operation that targets Russian speakers with Shade ransomware served via malicious JavaScript attachments.

The scam first emerged in a campaign that began in mid-October of last year, before dying down over the holiday period. But January ushered in a more intense second phase that doubled the previous campaign’s attack volume, reported Juraj Janosik, senior software engineer at ESET, in a company blog post on Monday.

Janosik said that 52 percent of the Shade attachments ESET detected between Jan. 1 and Jan. 24 went to Russian addresses, while the next most targeted countries were Ukraine, France, Germany and Japan.

The phishing emails feature Russian subject lines and content that attempt to trick recipients into believing they have received order updates from legitimate organizations such as Russian bank B&N Bank and the retail chain Magnit. One sample email was supposedly sent from a company manager with details from an unspecified order.

Source: https://www.scmagazine.com/home/security...-russians/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
XYplorer
What's new in Rele...Kool — 03:21
QOwnNotes
26.6.9 Cleaned up...Kool — 03:18
Opera 132.0.5905.102
Hello! We’ve ro...harlan4096 — 09:32
Ventoy 1.1.15
Ventoy 1.1.15 C...harlan4096 — 09:31
Vivaldi 8.0 Build 4033.54
Vivaldi 8.0 Build ...harlan4096 — 09:29

[-]
Birthdays
Today's Birthdays
avatar (39)Tedscolo
avatar (46)brakasig
Upcoming Birthdays
No upcoming birthdays.

[-]
Online Staff
There are no staff members currently online.

>