Campagne #Malware #Italy Week 32
๐Ÿ”ฅโ˜ ๏ธ๐Ÿ’ฃ๐Ÿ‘ป

#SnakeKeyLogger: Citazione
#Guloader: Ordine
#Formbook: Modulo bancario
#AsyncRAT: Documento
#RemcosRAT: Prezzi
#AgentTesla: Preventivo
#ModiLoader: Pagamento
#StrRat: Ordine
#RedLine: Quotazione
#Vidar: Pagamento
#Ousaban: Documento

#mwitaly

Campagne #Malware #Italy Week 29

โ˜ ๏ธ๐Ÿ’ฃ๐Ÿ”ฅ๐Ÿ‘ป
#AgentTesla: Ordine
#Formbook: Offerta
#GuLoader: Fattura Elettronica
#Remcos: Bank
#Lokibot: Delivery
#SmokeLoader: Pagamenti
#Irata: Malware APK
#RedLine: Offerta
#Neshta: Ordine
#Ousaban: Processo
#SnakeKeylogger: Fattura

#mwitaly

Campagne #Malware #Italy Week 28

โ˜ ๏ธ๐Ÿ’ฃ๐Ÿ”ฅ๐Ÿ‘ป
#Irata - #SpyNote: Malware APK
#Formbook: Rimborso
#AgentTesla: Ordine
#GuLoader: Fattura
#SnakeKeylogger: Prezzi
#Neshta: Ordine
#Remcos: Bank
#XWorm: Prezzi
#Ousaban: Processo
#Lokibot: Pagamento
#AsyncRAT: Bank

#mwitaly

Campagne #Malware #Italy Week 27

โ˜ ๏ธ๐Ÿ’ฃ๐Ÿ”ฅ๐Ÿ‘ป
#AgentTesla: Ordine
#Irata - #AzraelBot: Malware APK
#Formbook: Pagamento
#SnakeKeylogger: Materiale
#Remcos: Bank
#XWorm: Spedizioni
#VCRuntime: AgenziaEntrate
#Ousaban: Processo
#mwitaly

Just published our latest research into a series of ongoing malware campaigns abusing Google Cloud Run to distribute the #Astaroth #Mekotio & #Ousaban banking trojans, primarily across LATAM.

Check it out!

https://blog.talosintelligence.com/google-cloud-run-abuse/

Astaroth, Mekotio & Ousaban abusing Google Cloud Run in LATAM-focused malware campaigns

Since September 2023, we have observed a significant increase in the volume of malicious emails leveraging the Google Cloud Run service to infect potential victims with banking trojans.

Cisco Talos Blog