Rewterz

Rewterz Threat Alert – SmokeLoader Malware – Active IOCs

June 9, 2021
Rewterz

Rewterz Threat Advisory – Patch Tuesdays – Microsoft Patches 6 Zero-Days Under Active Attack

June 9, 2021

Rewterz Informative Update – Phishing Campaign using Social Engineering

Severity

High

Analysis Summary

Attackers have amped up their use of X-rated phishing lures in business email compromise (BEC) attacks. A new report found a stunning 974-percent spike in social-engineering scams involving suggestive materials, usually aimed at male-sounding names within a company. The malicious URLs largely do one or more of the same three things: Download malware; send users to a bogus dating site to trick victims into entering payment data; or track users for a follow-up attack, which the report said is likely to involve blackmail. Scammers use a tactic called email pass-through to track their victims.

advisory-1623239358.png

Impact

  • Unauthorized Remote Access
  • Data Exfiltration
  • Financial loss
  • Credential theft

Remediation

  • Always be suspicious while answering or opening from unknown sources or suspicious senders.
  • The psychological triggers or social engineering tactics used by attackers should be taught to every employee.
  • Do not download files attached in untrusted emails.
  • Do not click on URLs given in untrusted emails.

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.