Get a Pentest and security assessment of your IT network.

News

State-sponsored hackers abuse Slack API to steal airline data

A newly discovered backdoor named ‘Aclip’ abuses Slack API for covert communications. Slack API is utilized by the Aclip backdoor to send system information, files, and screenshots to the C2, while receiving commands in return. IBM researchers spotted the threat actors abusing this communication channel in March 2021 and responsibly disclosed it to Slack. Slack confirmed that Slack was not compromised in any way as part of this incident, and no Slack customer data was exposed or at risk. IBM X-Force has discovered and is actively tracking a third party that is attempting to use targeted malware leveraging free workspaces in Slack.”]

Source: https://www.bleepingcomputer.com/news/security/state-sponsored-hackers-abuse-slack-api-to-steal-airline-data/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months