Research Exposes Attacks on Military, Diplomats, Executives
ID: e4d0eec5-171e-562b-8b77-017dc55911a3
STIX ID: report--e4d0eec5-171e-562b-8b77-017dc55911a3
Feed Name: Security Ledger
*Blue Coat researchers identified the "Inception" attack framework — a sophisticated, targeted campaign using phishing and corrupted Word documents exploiting CVE-2012-0158 and CVE-2014-1761 to deploy keyloggers and remote access trojans against executives, diplomats, and military targets (notably in Russia and Eastern Europe); the operators used CloudMe for file hosting and a network of compromised routers (primarily in South Korea) as layered proxying to obfuscate command-and-control communications, suggesting a highly capable (possibly state-sponsored) threat actor.*
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
