Posts

Showing posts with the label Check Point Research

July 2023’s Most Wanted Malware: Remote Access Trojan (RAT) Remcos Climbs to Third Place while Mobile Malware Anubis Returns to Top Spot

  Check Point Research reported that RAT Remcos rose four places due to trojanized installers, Anubis Mobile Malware Ousted SpinOk and Education/Research Still Hardest Hit Check Point® Software Technologies Ltd.  (NASDAQ: CHKP), a leading provider of cybersecurity solutions globally, has  published its Global Threat Index for July 2023. Researchers found that Remcos moved to third place after threat actors created fake websites last month to spread malicious downloaders carrying the RAT. Meanwhile, mobile banking Trojan Anubis knocked relative newcomer SpinOk from top spot on the mobile malware list, and Education/Research was the most impacted industry.   Remcos is a RAT first seen in the wild in 2016 and is regularly distributed through malicious Microsoft documents or downloaders. It has been most recently observed in a campaign involving the  Fruity malware downloader .  The objective was to lure the victims to download the Fruity downloader, which ends...

Leveraging Dropbox to Soar Into Inbox

Image
By Jeremy Fuchs, Cybersecurity Researcher/Analyst at Check Point Software Company Introduction Email threats continue to increase. In  the first half of  2022, according to Check Point Research, email-delivered attacks reached 89% of all in-the-wild attacks.  It’s increasingly become the hackers’ favorite method of entering an environment, including over web-based attacks:      This increase in hacking activity has led security solutions to try and find ways to improve their defenses. As security improves against different attacks, hackers have to adjust.    One attack type that has worked is brand impersonation, when a hacker makes an email look like it comes from a trusted brand.    As we’ve written extensively, hackers are ditching brand impersonation and going for the real thing.   The new way that hackers originate Business Email Compromise (BEC) 3.0 attacks is through legitimate services.   There is no need for tedio...