Grappling with COVID-Themed Cyber Attacks: Pharmaceutical Sector
ID: 751df3fb-49b0-55f5-826f-ae129116755f
STIX ID: report--751df3fb-49b0-55f5-826f-ae129116755f
Feed Name: CloudSEK Blog
This CloudSEK report outlines a rise in COVID-19-themed cyber attacks targeting pharmaceutical companies and regulators worldwide—detailing ransomware incidents (e.g., Dr. Reddy’s, Lupin), supply-chain and Winnti-related malware activity (Blackfly/Winnti), and data access incidents at EMA/BioNTech—attributing campaigns to state-linked groups (China, Russia, North Korea) and describing common TTPs such as password-spray, brute-force, and spear-phishing; it recommends asset identification, segregation, intrusion detection, and threat intelligence/vulnerability alerting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
