logo

Pikabot Malware Spreading Through Phishing Campaigns

ID: aac22ee8-e3f1-5bfa-b8f5-36970a9b7744

STIX ID: report--aac22ee8-e3f1-5bfa-b8f5-36970a9b7744

Feed Name: KnowBe4 Blog

Threat Score
75/100

Date Published: 2024-01-10

Date Updated: 2026-04-28

Author: Stu Sjouwerman

...
...

Trend Micro reports that the actor known as “Water Curupira” is conducting widespread phishing campaigns distributing the multi-stage Pikabot loader, which decrypts and loads DLL payloads to install backdoors and ultimately facilitate Black Basta ransomware and other malware; attackers leverage thread-hijacking of email conversations and malicious attachments to increase success.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.