A new #malware campaign is spoofing Palo Alto Networks' GlobalProtect #VPN to deliver #WikiLoader via SEO malvertising.
https://thehackernews.com/2024/09/hackers-use-fake-globalprotect-vpn.html
A new #malware campaign is spoofing Palo Alto Networks' GlobalProtect #VPN to deliver #WikiLoader via SEO malvertising.
https://thehackernews.com/2024/09/hackers-use-fake-globalprotect-vpn.html
GlobalProtect VPN Exploited: New WikiLoader Malware Variant Discovered - https://www.redpacketsecurity.com/palo-alto-s-globalprotect-vpn-spoofed-to-deliver-new-malware-variant/
Campagne #Malware #Italy Week 16
๐ป๐ฃ๐ฅโ ๏ธ
#AgentTesla: Offerta
#Remcos: Fattura
#WikiLoader: Delivery
#Guloader: Ordine
#Irata: APK Bank
#DarkCloud: Preventivo
#Formbook: Quote
#StrRat: Pagamento
#mwitaly
Anyone have eyes on this report of NotePad++ compromise via default plugin?
#NotePadPP #mineTools #DLLHijack #WikiLoader
Campagne #Malware #Italy Week 10
โ ๏ธ๐ฅ๐ฃ๐ป
#AgentTesla: Ordine
#Formbook: Delivery
#Irata: APK Bank
#Remcos: Ordine
#WiKiloader: Fattura
#Pikabot: Resend
Campagne #Malware #Italy Week 08
๐ฅโ ๏ธ๐ฃ๐ป
#AgentTesla: Ordine
#Formbook: Bonifico
#SpyNote: APK Bank
#Pikabot: Resend
#AveMaria: Quote
#ModiLoader: Elenco
#WiKiloader: Fattura
#Astaroth: Fattura
#Remcos: Giacenza GLS
Campagne #Malware #Italy Week 48
Persistenti ๐ฅ
#AgentTesla: Bonifico
#Fombook: Ordine
#SpyNote: APK
#Guloader: Fattura
#RemcosRAT: AgenziaEntrate/PayPal/Offerta
Eccezione ๐ฃ
#AnyplaceRat: Pagamento
#WikiLoader: C2 ITA
#XWorm: Spedizione
#ChaosRat: Immagine
#WarzonRat: Nota
Threat actors are targeting Italian organizations with a phishing campaign aimed at delivering a new malware called WikiLoader. WikiLoader is a new piece of malware that is employed in a phishing campaign that is targeting Italian organizations. Threat actors behind the campaign are using WikiLoader to deliver a banking trojan, stealer, and malware such as Ursnif to the [โฆ]