Threat actors are once again leveraging tragedy, this time sending spam messages concerning the recent Boeing 737 MAX crash which took place last week.The campaign was discovered by 360 Threat Intelligence Center researchers who posted about the malicious campaign on Twitter.
Cybercriminals posing as a “private intelligent analyst” are sending spam loaded with malware to unsuspecting users claiming to have leaked information from the dark web on other airline companies that will “go down soon” and instructing the users to download the file and notify their loved ones.
The malspam contains a malicious JAR file and an attachment with names similar to MP4_142019.jar that if clicked, will be executed in Java to install the Houdini H-worm Remote Access Trojan and the Adwind information-stealing Trojan, Bleeping Computer researchers found.The emails are coming from the address [email protected] and contain subject lines such as "Fwd: Airlines plane crash Boeing 737 Max 8."
The Hacker News disclosed that the threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating that the operators are showing no signs of stopping despite extensive public disclosures into their inner workings.
The UK's National Cyber Security Centre (NCSC) issued an alert regarding a new 'zero-click' threat campaign orchestrated by Russian state-backed hackers targeting organizations across critical sectors, according to a recent report by IT Pro.
An open-source AI assistant named Hermes was used in a cyberattack targeting Thailand's Ministry of Finance, compromising sensitive personnel data and internal systems.