• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   social engineering

New PowerShell-based Backdoor Found in Turkey, Strikingly Similar to MuddyWater Tools

  • Posted on:November 30, 2018 at 2:42 am
  • Posted in:Malware, Targeted Attacks
  • Author:
    Trend Micro
0

MuddyWater is a well-known threat actor group that has been active since 2017. They have regularly targeted various organizations in Middle East and Central Asia, primarily using spear phishing emails with malicious attachments. We recently observed a few interesting delivery documents with similarities to the known MuddyWater tools, techniques and procedures.

Read More
Tags: backdoorphishingPowershellsocial engineering

Indian Military Personnel Targeted by “Operation C-Major” Information Theft Campaign

  • Posted on:March 23, 2016 at 5:29 am
  • Posted in:Malware, Targeted Attacks
  • Author:
    Trend Micro Forward-Looking Threat Research Team
0

A newly-discovered information theft campaign in India has stolen passport scans, photo IDs, and tax information from 160 Indian military officers, military attaches stationed in the said country, consultants, and resellers. Some evidence suggests that the attackers are based out of Pakistan, although no evidence suggests ties to the government.

This operation was not particularly sophisticated, however it was still able to acquire sensitive information that was probably acquired from restricted sources within the Indian government. This shows that targeted attacks don’t need to be well-planned operations backed by a big budget and sufficient resources. What attackers may lack in technical sophistication, they can make up for through tenacity, persistence, and clever social engineering.

Read More
Tags: cyber espionagesocial engineeringTargeted Attack

2016 Predictions: The Fine Line Between Business and Personal

  • Posted on:October 27, 2015 at 5:00 am
  • Posted in:Internet of Things, Mobile, Social, Targeted Attacks
  • Author:Raimund Genes (Chief Technology Officer)
0

Like any other year, 2015 had its mix of ups and downs in the world of security. A fine line exists between the threats that we face and the solutions we have at our disposal; any slip-up on the part of defenders can make an existing problem that much worse. The coming year will not…

Read More
Tags: 2016 predictionsdata breachdata breachesextortioninternet of thingsonline extortionpredictionssocial engineering

Behind Tax Fraud: A Profile of 3 IRS Scammers

  • Posted on:April 15, 2015 at 3:08 am
  • Posted in:Malware, Spam
  • Author:
    Loucif Kharouni (Senior Threat Researcher)
0

Cybercriminals have been taking advantage of tax season for years. While we have seen tax seasons involving countries like Australia and the U.K., it appears that cybercriminals tend to heavily favor the use of Internal Revenue Service (IRS) scams, especially during the US tax season. Over the years, the attackers’ means may have evolved but their…

Read More
Tags: IRSIRS scamsIRS tax scamssocial engineeringtaxtax scamstax season

Malware Bypasses Chrome Extension Security Feature

  • Posted on:September 4, 2014 at 10:12 am
  • Posted in:Malware
  • Author:
    Sylvia Lascano (Fraud Analyst)
0

Originally created to extend a browser’s functionality, browser extensions have become yet another tool for cybercriminals’ schemes. Earlier this year, Google has addressed the issue of malicious browser extensions by enforcing a policy that only allows installations if the extensions are hosted in the Chrome Web Store. While this policy can provide more security for…

Read More
Tags: browser extensionFacebooksocial engineeringsocial mediaTwitter
Page 1 of 612 › »

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.