Group-IB researchers uncover an underground market that leverage phishing kits to bypass MFA and launch BEC attacks in the United States, Australia, and Europe.
Japan's National Center of Incident Readiness and Strategy for Cybersecurity was reportedly suspected to be compromised by Chinese state-sponsored threat actors, reports The Record, a news site by cybersecurity firm Recorded Future.
Adversary-in-the-middle phishing has become increasingly prevalent as threat actors seek to deploy stealthy high-volume phishing attacks, reports The Hacker News.
According to Mandiant, threat group UNC4841 dropped a second wave of backdoor malware on some victims, including government organizations, to maintain persistence for espionage purposes.