Grandoreiro Banking Trojan Hits Brazil as Smishing Scams Surge in Pakistan
ID: f66cd685-7fa1-5f74-8fd4-71a89487df07
STIX ID: report--f66cd685-7fa1-5f74-8fd4-71a89487df07
Feed Name: The Hacker News
Multiple active threat clusters are detailed: the Smishing Triad has expanded into Pakistan using SMS/iMessage scams impersonating Pakistan Post to steal financial data; PINEAPPLE is distributing the Astaroth infostealer via abused cloud services in Brazil; UNC5176 is infecting targets with a URSA backdoor via email/malvertising-delivered HTA/VBS stages; FLUXROOT continues Grandoreiro banking trojan distribution using cloud hosting; and Red Akodon is delivering various RATs through phishing aimed at Colombian organizations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
