FIN8-linked actor targets Citrix NetScaler systems

Financially motivated actor linked to the FIN8 group exploits the CVE-2023-3519 RCE in attacks on Citrix NetScaler systems in massive attacks

Security Affairs
FIN8 Group spotted delivering the BlackCat Ransomware

The cybercrime group FIN8 is using a revamped version of the Sardonic backdoor to deliver the BlackCat ransomware. The financially motivated group FIN8 (aka Syssphinx) was spotted using a revamped version of a backdoor tracked as Sardonic to deliver the BlackCat ransomware (aka Noberus ransomware). Sardonic is a sophisticated backdoor that supports a wide range of features that was designed […]

Security Affairs

Symantec said the FIN8 cybercrime group is using an updated backdoor in its cyberattacks, which increasingly involve ransomware (ALPHv/BlackCat)

#FIN8

https://therecord.media/fin8-backdoor-ransomware-cybercrime

FIN8 cybercrime group using updated backdoor amid shift to ransomware

Symantec’s Threat Hunter Team said it observed the group deploying a variant of the Sardonic backdoor before delivering ransomware known as Black Cat or AlphV.

L'attore di minacce finanziariamente motivato #FIN8 è stato osservato impiegare nei recenti attacchi una backdoor non rilevata in precedenza, soprannominata #Sardonic.
Di Pierluigi #Paganini su #cyberdefensemagazine
https://www.cyberdefensemagazine.com/fin8-group-used/
FIN8 group used a previously undetected Sardonic backdoor in a recent attack

Financially motivated threat actor FIN8 employed a previously undocumented backdoor, tracked as 'Sardonic,' in recent attacks. The financially motivated threat actor FIN8 has been observed employing a previously undetected backdoor, dubbed Sardonic, on infected systems.

Cyber Defense Magazine
FIN8 Targets Card Data at Fuel Pumps - Paying at the pump has landed in the sights of the notorious PoS-skimming group. more: https://threatpost.com/fin8-targets-card-data-fuel-pumps/151105/ #fueldispenser #cyberthreats #cardscraper #hospitality #pointofsale #cybercrime #gaspumps #skimmers #malware #hackers #hacks #fin8 #visa #rat
FIN8 Targets Card Data at Fuel Pumps

Paying at the pump has landed in the sights of the notorious PoS-skimming group.

Threatpost - English - Global - threatpost.com