Cybersecurity

Security Brief: TA866 Returns with a Large Email Campaign  | Proofpoint US

What happened  Proofpoint researchers identified the return of TA866 to email threat campaign data, after a nine-month absence. On January 11, 2024, Proofpoint blocked a large volume campaign consisting of several thousand emails targeting North America. Invoice-themed emails had attached PDFs with names such as “Document_[10 digits].pdf” and various subjects such as “Project achievements”.  The […]

Cybersecurity

Security Brief: TA571 Delivers IcedID Forked Loader | Proofpoint US

What happened  Proofpoint researchers identified TA571 delivering the Forked variant of IcedID in two campaigns on 11 and 18 October 2023. Both campaigns included over 6,000 messages, each impacting over 1,200 customers in a variety of industries globally.   Emails in the campaigns purported to be replies to existing threads. This is known as thread hijacking. […]