Remove 11
Remove 2014 Remove Encryption Remove Information Security Remove Retail
article thumbnail

TA505 is expanding its operations

Security Affairs

The threat group is also known for its recent attack campaign against Bank and Retail business sectors, but the latest evidence indicates a potential expansion of its criminal operation to other industries too. su”, using an SSL encrypted communication, and stores them in “C:UsersPublic” path: “ rtegre.exe ” and “ wprgxyeqd79.exe

IT 64
article thumbnail

The stealthy email stealer in the TA505 hacker group’s arsenal

Security Affairs

In fact, many independent researchers pointed to a particular email attack wave probably related to the known TA505 hacking group , active since 2014 and focusing on Retail and Banking companies. Figure 11: Geolocation of emails TLD exposure. adrotate banner=”9″ ] [ adrotate banner=”12″].

Retail 69