Get a Pentest and security assessment of your IT network.

Cyber Security

#Opfail: Phisher Attaches Powershell Exec Instead of Malware

The phishing message was delivered to the inbox of My Online Security and came with a spoofed sender address. The phisher may have wanted to use a LNK shortcut file for the attack, a method that is regularly used lately to deliver malicious payloads. This method has grown in popularity after an IT engineer named Felix revealed in a blog post how to weaponize a shortcut file to drop an arbitrary payload. The method was first observed in spear phishing campaigns from CozyCar, OfficeMonkeys, The Dukes, CozyDuke, and Grizzly Steppe.

Source: https://www.bleepingcomputer.com/news/security/opfail-phisher-attaches-powershell-exec-instead-of-malware/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security