Cloud Atlas: Analysis of Phishing Campaign and VBShower Backdoor

Pulse ID: 699d3e7bfa78fc758cbaebfd
Pulse Link: https://otx.alienvault.com/pulse/699d3e7bfa78fc758cbaebfd
Pulse Author: Tr1sa111
Created: 2026-02-24 06:00:27

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#BackDoor #Cloud #CloudAtlas #CyberSecurity #InfoSec #OTX #OpenThreatExchange #Phishing #VBS #bot #Tr1sa111

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

Cloud Atlas: Analysis of Phishing Campaign and VBShower Backdoor

The article analyzes a phishing campaign by the Cloud Atlas APT group targeting Russian organizations. It details five successful attacks on the same system over time, using malicious Microsoft Office documents to deliver the VBShower backdoor. The attackers used alternate data streams to hide malicious code and maintained persistence through registry modifications. The analysis covers the evolution of the attack chain, including the use of VBCloud malware and various command and control servers. Despite prolonged access, no evidence of lateral movement was found. The report concludes that Cloud Atlas continues to be active, using consistent tactics and tools.

Pulse ID: 699c2539b33fbe17058937b3
Pulse Link: https://otx.alienvault.com/pulse/699c2539b33fbe17058937b3
Pulse Author: AlienVault
Created: 2026-02-23 10:00:25

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#BackDoor #Cloud #CloudAtlas #CyberSecurity #ICS #InfoSec #Malware #Microsoft #MicrosoftOffice #OTX #Office #OpenThreatExchange #Phishing #Russia #VBS #bot #AlienVault

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange
Movie TV Tech Geeks #Movie #ScienceFiction #StrangeDays #CloudAtlas 7 Near-Perfect Sci-Fi Movies That No One Remembers Today http://dlvr.it/TQrBxs
Cloud Atlas activity in the first half of 2025: what changed
#CloudAtlas #VBShower
https://securelist.com/cloud-atlas-h1-2025-campaign/118517/
Cloud Atlas activity in the first half of 2025: what changed

Kaspersky expert describes new malicious tools employed by the Cloud Atlas APT, including implants of their signature backdoors VBShower, VBCloud, PowerShower, and CloudAtlas.

Kaspersky

🎧 Hörtipp zum #Wochenende:

Was los mit der Marsatmosphäre? Sie ist dünn, CO2-lastig und lebensfeindlich. Aber ist das das ganze Bild? Immerhin: Es gibt Wolken - und zwar deutlich vielseitigere als gedacht. Mehr in unserem Podcast @astro_geo:

https://www.riffreporter.de/de/wissen/astrogeo-podcast-mars-atmosphaere-duenne-luft-kanaele-wolken-atlas

#cloudatlas #astrodon #podcast #space #mars #weltraum @riffreporter

AstroGeo Podcast: Mehr als dünne Luft - was verbirgt die Atmosphäre des Planeten Mars?

Die Geschichte der Mars-Atmosphäre ist voller Wendungen: Von der Hoffnung auf außerirdisches Leben bis zur Entdeckung eines komplexen Wettersystems. Im Podcast erzählt Karl eine kleine Forschungsgeschichte der marsianischen Lufthülle.

RiffReporter

Cloud Atlas returns - targeting Russia’s agricultural firms with phishing lures tied to an upcoming industry forum.

➡️ Exploited CVE-2017-11882 again - proof that patch fatigue and social engineering still outmatch security awareness.
How long can legacy CVEs remain viable entry points?

💬 Discuss below & follow TechNadu for deep-dive threat coverage.

#CyberSecurity #APT #CloudAtlas #ThreatIntel #CVE201711882 #InfoSec #CyberAttack #CyberAwareness #TechNadu

In Cloud Atlas Halle Berry is a Necromonger... it's no longer the Necromonger way.. but the virus ai is still running and that's your papa Legba... the Legba likes to play the game of names and that's the true true. #cloudatlas #necromongers #andromedanvirus #cloud10

Yes! One of my favourite underrated gems, #CloudAtlas is finally getting a #4K #BluRay release! I hope there's a UK/EU version coming too so I can avoid importing.

Given the recent success of "Everything Everywhere All At Once" maybe there will be a warmer welcome waiting for this film nowadays.