Cybercrooks are targeting Bengal cat lovers in Australia for some reason
ID: bca542bb-7673-5b55-9ccf-58838954b970
STIX ID: report--bca542bb-7673-5b55-9ccf-58838954b970
Feed Name: The Register (Security)
Sophos reported a new Gootloader campaign that leverages SEO poisoning and malvertising to trick users (in one observed case, Australian Bengal cat enthusiasts) into downloading malicious ZIP/JS files. The multi-stage attack chain establishes persistence, executes PowerShell to stage Gootkit, and ultimately can deliver tools such as Cobalt Strike and ransomware; researchers note this technique (search-result poisoning) has been widely used by malware-as-a-service and initial access brokers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
