Cybercrime gang FIN7 is impersonating the U.S. Department of Health and Human Services to trick enterprises into using a malicious flash drive, the FBI says. The flash drive instructs the victim’s computer to download and execute malware on the device. “Rubber Ducky’ attacks are relatively rare to find them coming from actual attackers in the wild,” a security researcher says. In some attacks, simply plugging the device into a system could infect unsuspecting users computer without them realizing it.”]
Source: https://www.bankinfosecurity.com/fin7-targets-us-enterprises-via-badusb-a-18278

