#Malspam, #Ursnif veicolato tramite false istanze #CIVIS
Prosegue la campagna... - The Computer Security News (BLOG) https://www.computersecuritynews.it/malspam-ursnif-veicolato-tramite-false-istanze-civis/
#Android nel mirino di #Ursnif: finte mail dell’Agenzia delle Entrate diffondono il #malware #DroidJack
https://www.cybersecurity360.it/news/android-nel-mirino-di-ursnif-finte-mail-dellagenzia-delle-entrate-diffondono-il-malware-droidjack/
#cybersecurity #hacking
#Hacking #CyberSecurity #droidjack #Malware #Ursnif #Android
Ongoing #Ursnif campaign loads DLL that claims to be txt file into memory. Follow on activity from both #tvrat and #cobaltstrike
C2 8.208.90.2, 47.241.106.208, various domains usually starting with f1[.]pipen[.]at
IOC's in @MISPProject Priv.
https://thedfirreport.com/2020/04/24/ursnif-via-lolbins/ …pic.twitter.com/0OoRNLWZBO
#dfir #cobaltstrike #tvrat #Ursnif