Cybersecurity

From Social Engineering to DMARC Abuse: TA427’s Art of Information Gathering  | Proofpoint US

April 16, 2024 Greg Lesnewich, Crista Giering, and the Proofpoint Threat Research Team  Key takeaways   TA427 regularly engages in benign conversation starter campaigns to establish contact with targets for long-term exchanges of information on topics of strategic importance to the North Korean regime.  In addition to using specially crafted lure content, TA427 heavily leverages think […]

Cybersecurity

TA422’s Dedicated Exploitation Loop—the Same Week After Week  | Proofpoint US

December 05, 2023 Greg Lesnewich, Crista Giering and the Proofpoint Threat Research Team Key takeaways  Since March 2023, Proofpoint researchers have observed regular TA422 (APT28) phishing activity, in which the threat actor leveraged patched vulnerabilities to send, at times, high-volume campaigns to targets in Europe and North America.  TA422 used the vulnerabilities as initial access […]