Espionage Campaign Targeted Stock Exchange Executive for Five Months
ID: bd125dbb-bbdc-5042-9257-e43b0d0f90de
STIX ID: report--bd125dbb-bbdc-5042-9257-e43b0d0f90de
Feed Name: security.com
Threat Score
This report documents a focused, long‑dwell intrusion in which attackers achieved local escalation and persistent access to a host, deployed masquerading binaries and scheduled tasks, and used an Aspose-based mailbox stealer to incrementally extract a single user's Outlook mailbox over five months, exfiltrating data via Dropbox and OneDrive while rotating techniques to evade detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
