Hacker tricksen Teams-Nutzer mit Spam aus
https://glm.io/208048?n #MicrosoftTeams #Malware #Snow #Blackhats #UNC6692

📢⚠️ UNC6692 hackers exploit #MicrosoftTeams with fake IT alerts to deploy SNOW malware, steal credentials, and breach corporate networks in advanced attacks.

Read: https://hackread.com/unc6692-hackers-microsoft-teams-snow-malware/

#CyberSecurity #Microsoft #MSTeams #UNC6692 #Malware

UNC6692 Hackers Exploit Microsoft Teams to Deploy SNOW Malware

UNC6692 hackers exploit Microsoft Teams with fake IT alerts to deploy SNOW malware, steal credentials, and breach corporate networks in advanced attacks.

Hackread - Cybersecurity News, Data Breaches, AI and More

UNC6692 usa Microsoft Teams per distribuire SNOW: email bombing, impersonazione helpdesk e compromissione del dominio Active Directory

Google Threat Intelligence Group e Mandiant hanno documentato UNC6692, un gruppo che usa email bombing e impersonazione del supporto IT su Microsoft Teams per distribuire SNOW, una suite malware modulare composta da SNOWBELT, SNOWGLAZE e SNOWBASIN. Nessun exploit: pura ingegneria sociale che porta al dump di LSASS e alla compromissione del dominio Active Directory.

https://insicurezzadigitale.com/unc6692-usa-microsoft-teams-per-distribuire-snow-email-bombing-impersonazione-helpdesk-e-compromissione-del-dominio-active-directory/

The threat actor cluster UNC6692 is bypassing traditional email filters by impersonating IT help desk personnel directly on Microsoft Teams. 
The attack starts with "email bombing" to overwhelm the victim, followed by a Teams message offering "support" that tricks users into installing a malicious browser extension called SNOWBELT.

https://www.bleepingcomputer.com/news/security/threat-actor-uses-microsoft-teams-to-deploy-new-snow-malware/

#InfoSec #CyberSecurity #MicrosoftTeams #Malware #UNC6692

Threat actor uses Microsoft Teams to deploy new “Snow” malware

A threat group tracked as UNC6692 uses social engineering to deploy a new, custom malware suite named 'Snow' which includes a browser extension, a tunneler, and a backdoor.

BleepingComputer

A sophisticated new threat actor, UNC6692, is actively exploiting Microsoft Teams to deploy 'Snow' malware, proving internal communication platforms are not immune. This campaign leverages social engineering, impersonating IT Help Desk to bypass email filters and target senior leadership. The modular 'Snow' malware, including components like SNOWBELT and SNOWGLAZE, aims for deep system…

https://www.tpp.blog/29ql8yz

#cybersecurity #unc6692 #microsoftteams

🤖 This post was AI-generated.

Microsoft Teams Used to Deploy Sophisticated Snow Malware

Cyber attackers have cleverly used Microsoft Teams to deploy a sophisticated malware suite, dubbed Snow, by tricking victims into installing a fake anti-spam patch that ultimately led to prolonged access, credential theft, and domain compromise. They started by creating a sense of urgency through email bombing, then followed up with a…

https://osintsights.com/microsoft-teams-used-to-deploy-sophisticated-snow-malware?utm_source=mastodon&utm_medium=social

#MicrosoftTeams #SnowMalware #Unc6692 #MalwareOperations #SocialEngineering

Microsoft Teams Used to Deploy Sophisticated Snow Malware

Learn how UNC6692 used Microsoft Teams to deploy Snow malware via social engineering and email bombing, and protect your organization now from sophisticated attacks.

OSINTSights
Snow Flurries: How UNC6692 Employed Social Engineering to Deploy a Custom Malware Suite
#UNC6692 #SNOWBELT #SNOWGLAZE #SNOWBASIN
https://cloud.google.com/blog/topics/threat-intelligence/unc6692-social-engineering-custom-malware/
How UNC6692 Employed Social Engineering to Deploy a Custom Malware Suite | Google Cloud Blog

UNC6692 uses social engineering via email spamming and Microsoft Teams phishing to deploy a modular malware suite.

Google Cloud Blog

Threat Actors Exploit Microsoft Teams for SNOW Malware Deployment

Cyber attackers are exploiting Microsoft Teams by impersonating IT helpdesk staff, tricking victims into accepting chats from unfamiliar accounts and deploying SNOW malware. They start by flooding inboxes with urgent emails, then pose as IT support over Teams, offering to fix the problem.

https://osintsights.com/threat-actors-exploit-microsoft-teams-for-snow-malware-deployment?utm_source=mastodon&utm_medium=social

#SocialEngineering #MicrosoftTeams #SnowMalware #Unc6692 #MalwareDeployment

Threat Actors Exploit Microsoft Teams for SNOW Malware Deployment

Learn how threat actors exploit Microsoft Teams for SNOW malware deployment and protect your organization from UNC6692's social engineering tactics - read the full report now.

OSINTSights

UNC6692 Exposes Custom Malware Suite via Social Engineering

In a clever social engineering ploy, UNC6692 launched a massive email campaign in late December 2025, flooding targets with messages to create a sense of urgency and distraction, before following up with a convincing Microsoft Teams message that pushed a malicious link. The attackers then cleverly disguised their malware as…

https://osintsights.com/unc6692-exposes-custom-malware-suite-via-social-engineering?utm_source=mastodon&utm_medium=social

#SocialEngineering #Unc6692 #GoogleThreatIntelligenceGroup #MicrosoftTeams #AmazonS3

UNC6692 Exposes Custom Malware Suite via Social Engineering

Learn how UNC6692 uses social engineering and custom malware to target victims, and discover crucial steps to protect yourself from similar threats today.

OSINTSights