Blog | G5 Cyber Security

DRBControl cyber-espionage group targets gambling, betting companies

The DRBControl APT group has been targeting gambling and betting companies worldwide with malware that links to two China-linked APT groups. The group targeted a company in the Philippines using both common and custom malware and exploitation tools. One of the backdoors leverages the file hosting service Dropbox as command-and-control (C&C) The malware was used to steal Office and PDF documents, key logs, SQL dumps, and a KeePass manager database database. The attackers used two commands issued on a compromised machine to download malicious executables from a domain.”]

Source: https://securityaffairs.co/wordpress/98119/breaking-news/drbcontrol-targets-gambling-firms.html

Exit mobile version