Briefing Malware
BLOG CERT SOGETI ESEC
CERT BRIEFING MALWARE

Briefing Malware - 06/07/2021

6th of July 2021 - Winners of the 27th week : Redline, njRAT and AsyncRAT.

Some links points at extended actionnable intelligence (Threat Bulletins, TTPs, signatures, etc) on our Threat Intelligence Platform Anomali. This access is limited to our clients.

 

Threat statistics report

Publication date:

06/07/2021

Distribution :

TLP : WHITE  

What's new?

Lokibot (ID Mitre : S0447)

 

Italian Public Administration targeted by 16 campaigns Italian Public Administration was the target of attack campaigns involving 6 different malwares :#Lokibot, #FormBook, #Raccoon, #AgentTesla, #Ursnif//#Gozi and #Rastaf. Most of them involved phishing email with attachments of different types ( ZIP, RTF, XLSX, The main subject of those emails was ‘Italian bank’ and more precisely targeting namely #Intesa Sanpaolo, #Poste Italiane, #ING or #Unicredit.

 

https://www difesaesicurezza.com/cyber/cybercrime-la-pa in-italia-attaccata-da-16-campagne-la-scorsa-settimana/

 

Download the report