https://securityaffairs.com/163109/malware/phorpiex-botnet-lockbit-black-ransomware.html
#securityaffairs #hacking #malware
If you've been monitoring that #phorpiex "Your Document" with document\.zip from Jenny @ gsd . com, it's now dropping #lockbit hosted at:
http:// 193.233 .132 .177/lbb.exe
https://app.any.run/tasks/206f3ae9-cdd7-4ee4-a1b5-f9cccf3541fc
A (late again :( ) csv formatted list of #malspam campaigns that crossed my path in March to include subjects, malware, hashes, c2's, and email exfil addresses. Side note; #phorpiex campaign at 35K+ is the largest I've seen and ongoing:
https://gist.github.com/silence-is-best/e0fa9b5c4d5028a2e853d98b702cacdf