Watch Out for 'Latrodectus' - This Malware Could Be In Your Inbox
ID: 57331dbd-2f59-5ed2-8630-694c0ab408f2
STIX ID: report--57331dbd-2f59-5ed2-8630-694c0ab408f2
Feed Name: The Hacker News
Threat Score
**Latrodectus** is a newly identified downloader being distributed in email phishing campaigns since late November 2023; it performs sandbox-evasion (MAC and process-count checks), posts encrypted system info to C2, retrieves and executes payloads, and is used by initial access brokers (TA577/TA578) to deploy additional malware such as IcedID, QakBot, PikaBot and Cobalt Strike, with infrastructure ties to previously observed IcedID operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
