APT37 Launches Targeted Cyberattack Using Social Media and Tampered Software
ID: 59d3a481-acf1-5dc7-a420-476e807f34c9
STIX ID: report--59d3a481-acf1-5dc7-a420-476e807f34c9
Feed Name: ThreatCluster
Threat Score
**APT37** has launched an active targeted intrusion campaign against defense-related organizations using social media (e.g., Facebook), encrypted messaging apps (Telegram), and a tampered Wondershare PDFelement installer to deliver malicious activity aimed at data exfiltration; the campaign relies on advanced social engineering and stealthy techniques, and defenders are advised to deploy behavior-based EDR to detect process injection and related malicious behaviors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
