Remove Analysis Remove Encryption Remove Phishing Remove Retail
article thumbnail

Exclusive: Welcome “Frappo” – Resecurity identified a new Phishing-as-a-Service

Security Affairs

“Frappo” acts as a Phishing-as-a-Service and enables cybercriminals the ability to host and generate high-quality phishing pages which impersonate major online banking, e-commerce, popular retailers, and online-services to steal customer data. The last update of the service was registered May 1, 2022.

article thumbnail

Report: Threat of Emotet and Ryuk

Security Affairs

Analyzing the general distribution of the compromised domains, grouped by category, it is possible to verify that the most affected were as follows: professional/companies (20.2%), personal (13.5%), retail (12.7%) and industry (11.9%). Social media/communication organizations, health care and non-profit organizations were less impacted.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

TA505 is expanding its operations

Security Affairs

The threat group is also known for its recent attack campaign against Bank and Retail business sectors, but the latest evidence indicates a potential expansion of its criminal operation to other industries too. Technical Analysis. The intercepted attack starts with a spear-phishing email embedding a spreadsheet.

IT 69
article thumbnail

Croatia government agencies targeted with news SilentTrinity malware

Security Affairs

Between February and April, allegedly state-sponsored hackers have launched a spear-phishing campaign against government agencies. The phishing messages posed as delivery notifications from the Croatian postal or other retail services, they included a Microsoft Excel saved in the old.xls format and compiled the previous day.

article thumbnail

VISA warns of cyber attacks on PoS systems of fuel dispenser merchants

Security Affairs

EMV Chip, Pointto -Point Encryption, Tokenization, etc.) According to the new alert issued by the PFD, in the first incident crooks compromised compromise a North American fuel dispenser merchant using a phishing email to deliver a Remote Access Trojan (RAT) to the target network. and non-compliance with PCI DSS.

Sales 65
article thumbnail

Parasite HTTP RAT implements a broad range of protections and evasion mechanims

Security Affairs

” reads the analysis published by Proofpoint. ” continues the analysis. The malware was involved in a small email campaign targeting organizations primarily in the information technology, healthcare, and retail industries. Experts observed the malware using code from a public repository for sandbox detection.

article thumbnail

The stealthy email stealer in the TA505 hacker group’s arsenal

Security Affairs

In fact, many independent researchers pointed to a particular email attack wave probably related to the known TA505 hacking group , active since 2014 and focusing on Retail and Banking companies. Technical Analysis. The piece of malware under analysis were downloaded from “bullettruth[.com/out[.exe”, Conclusion.

Retail 73