Spyke

Syndicated from the fediverse. Read and engage on the original instance.

View original on sh.itjust.works
cybersecurity·Cybersecuritybyborari

Detecting and mitigating a multi-stage AiTM phishing and BEC campaign | Microsoft Security Blog

Microsoft researchers have discovered an emerging cluster of TTP's they have named Storm-1167 being used by an unknown threat actor to target banking and financial services institutions.

This threat actor has been utilizing phishing emails for initial compromise, then using compromised inboxes to further distribute their malicious phishing emails.

The threat actor has been observed taking steps to minimize detection and to establish persistence.

Detecting and mitigating a multi-stage AiTM phishing and BEC campaign | Microsoft Security Bloghttps://www.microsoft.com/en-us/security/blog/2023/06/08/detecting-and-mitigating-a-multi-stage-aitm-phishing-and-bec-campaign/Open linkView original on sh.itjust.works
5

No replies yet

No comments on the original post yet.
Detecting and mitigating a multi-stage AiTM phishing and BEC campaign | Microsoft Security Blog | Spyke