Estimated reading time: 11 minutes
Contents Introduction Campaign Overview Initial Access Infection Chain Technical Analysis Stage 1: Initial Delivery (Archive→JavaScript) Stage 2: PowerShell Loader1 Analysis Stage 3: PowerShell Loader2 Analysis Stage 4 – Phantom Stealer v3.5.0: Data Harvesting and Exfiltration Campaign Attribution Conclusion IOC’s...Information Technology, Network Security & Cybersecurity Updates
Estimated reading time: 8 minutes
Introduction Seqrite Labs recently identified a malware distribution campaign that abused the credibility of government institutions to increase infection success rates. The threat actors impersonated legitimate government departments and distributed malicious emails disguised as official notifications related to taxation,...
Estimated reading time: 11 minutes
Contents Introduction Key Targets Industries Affected Geographical focus Infection Chain Initial Findings Looking into the Decoy Document Technical Analysis Stage 1 – Initial Infection through LNK file Stage 2 – PowerShell Downloader Analysis Stage 3 – The .NET Dropper...
Estimated reading time: 7 minutes
Table of Contents Introduction Infection Chain Technical Analysis Conclusion Seqrite Coverage Indicators of Compromise (IOCs) MITRE ATT&CK Mapping Introduction The Seqrite Threat Research Team identified a targeted spear-phishing campaign disguised as a legitimate business invoice. The phishing email impersonates a legitimate...
Estimated reading time: 15 minutes
Authors: Dixit Panchal & Soumen Burma Table of Contents: Introduction: Key Targets: Infection Chain: Initial Findings about Campaign: Initial Mail: Email Attachment: Lure: Official GoI, Income Tax Document: Technical Analysis: Infrastructural Artefacts & Threat actor Attributions. Campaign Timeline. Conclusion:...
Estimated reading time: 6 minutes
Introduction As enterprises continue to expand their digital footprint, cybercriminals are finding new ways to exploit assets that exist beyond traditional security boundaries. From fake websites and phishing campaigns to brand impersonation and leaked credentials, threats are increasingly emerging...
Estimated reading time: 7 minutes
Authors: Vaibhav Krushna Billade, Dixit Panchal & Rumana Siddiqui. Table of Contents Introduction Key Targets Infection Chain Initial Campaign Findings Technical Analysis Stage 1: Initial Delivery (RAR Archive) Stage 2: Rouki-Obfuscated Batch Loader Stage 3: Startup Persistence Script Stage...
Estimated reading time: 5 minutes
Introduction As organizations continue to expand their digital footprint, cyber threats are no longer confined to internal networks and endpoints. Today’s threat landscape extends far beyond traditional security perimeters, exposing organizations to risks such as phishing attacks, brand impersonation,...