SharePoint Island Hopping: Phishing with compromised accounts
Tags
country: | Nigeria |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Credentials - T1589.001 Domains - T1583.001 Domains - T1584.001 Ip Addresses - T1590.005 Malware - T1587.001 Malware - T1588.001 Multi-Factor Authentication - T1556.006 Phishing - T1660 Phishing - T1566 Sharepoint - T1213.002 |
Common Information
Type | Value |
---|---|
UUID | 8ab60b9c-679c-4afb-90d0-cd3f9c6d4c08 |
Fingerprint | fd9d095b2907cf51 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | June 13, 2021, 6:58 a.m. |
Added to db | Sept. 11, 2022, 12:48 p.m. |
Last updated | Nov. 17, 2024, 5:57 p.m. |
Headline | @BushidoToken Threat Intel |
Title | SharePoint Island Hopping: Phishing with compromised accounts |
Detected Hints/Tags/Attributes | 41/3/76 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 24 | ✔ | @BushidoToken Threat Intel | https://blog.bushidotoken.net/feeds/posts/default?alt=rss | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | evelyndocument-lastingsecur7.hostingerapp.com |
|
Details | Domain | 1 | gr8testb1coin-84mfh40pro.hostingerapp.com |
|
Details | Domain | 1 | homy-preparations.hostingerapp.com |
|
Details | Domain | 1 | kristaz-doguments.hostingerapp.com |
|
Details | Domain | 1 | lencrpted-trumetmsg.hostingerapp.com |
|
Details | Domain | 1 | lifedoubledoc-sharepr0m.hostingerapp.com |
|
Details | Domain | 1 | lightening-securesolo.hostingerapp.com |
|
Details | Domain | 1 | mymovez.hostingerapp.com |
|
Details | Domain | 1 | pr0spertie54-quadr9pop.hostingerapp.com |
|
Details | Domain | 1 | prestige-onedr1ve-docc.hostingerapp.com |
|
Details | Domain | 1 | prirmary-mgcheck.hostingerapp.com |
|
Details | Domain | 1 | sleh94manne3-oxt93m049.hostingerapp.com |
|
Details | Domain | 1 | smallows3r-smallows3r.hostingerapp.com |
|
Details | Domain | 1 | sparow-sparow24.hostingerapp.com |
|
Details | Domain | 1 | special707-o49mdpr0.hostingerapp.com |
|
Details | Domain | 1 | speeedie24hs-documents365.hostingerapp.com |
|
Details | Domain | 1 | torexserv-pieblokdoc.hostingerapp.com |
|
Details | Domain | 1 | trptap-mytprojatv.hostingerapp.com |
|
Details | Domain | 1 | worldrm-fintechz.hostingerapp.com |
|
Details | Domain | 1 | mycentenary-my.sharepoint.com |
|
Details | Domain | 1 | dmscan-my.sharepoint.com |
|
Details | Domain | 1 | hsincorporated-my.sharepoint.com |
|
Details | Domain | 1 | katherinefrank-my.sharepoint.com |
|
Details | Domain | 1 | vivexbiomedical-my.sharepoint.com |
|
Details | Domain | 1 | universaltechnologies-my.sharepoint.com |
|
Details | Domain | 1 | amwarelogistics-my.sharepoint.com |
|
Details | Domain | 1 | collierschools-my.sharepoint.com |
|
Details | Domain | 1 | mteck-my.sharepoint.com |
|
Details | Domain | 1 | hdceicom-my.sharepoint.com |
|
Details | Domain | 1 | mapitgo-my.sharepoint.com |
|
Details | Domain | 1 | nitcoinc-my.sharepoint.com |
|
Details | Domain | 1 | blackbeltinsurors-my.sharepoint.com |
|
Details | Domain | 1 | tmxno-my.sharepoint.com |
|
Details | Domain | 1 | pyrongroup-my.sharepoint.com |
|
Details | Domain | 1 | evolutioninsurecom-my.sharepoint.com |
|
Details | Domain | 1 | groceryoutletinc-my.sharepoint.com |
|
Details | Domain | 1 | covga-my.sharepoint.com |
|
Details | Domain | 1 | metrojacksonobgyn-my.sharepoint.com |
|
Details | Domain | 1 | bbmkbtr-my.sharepoint.com |
|
Details | Domain | 1 | mpcyak-my.sharepoint.com |
|
Details | Domain | 1 | mstfdonor-my.sharepoint.com |
|
Details | Domain | 1 | h2otreat-my.sharepoint.com |
|
Details | Domain | 1 | tamakilaw-my.sharepoint.com |
|
Details | Domain | 1 | azliver-my.sharepoint.com |
|
Details | Domain | 1 | doddburnham-my.sharepoint.com |
|
Details | Domain | 1 | phgllc-my.sharepoint.com |
|
Details | Domain | 1 | dnaz-my.sharepoint.com |
|
Details | Domain | 1 | ericryan-my.sharepoint.com |
|
Details | Domain | 1 | mortgagemasters-my.sharepoint.com |
|
Details | Domain | 1 | broadbandhospitality-my.sharepoint.com |
|
Details | Domain | 1 | regionallandtitle-my.sharepoint.com |
|
Details | Domain | 1 | regionaltitleservices-my.sharepoint.com |
|
Details | Domain | 1 | pawpawtownship-my.sharepoint.com |
|
Details | Domain | 1 | inopo-my.sharepoint.com |
|
Details | Domain | 1 | enterprisesinc-my.sharepoint.com |
|
Details | Domain | 1 | whittyengineering478-my.sharepoint.com |
|
Details | Domain | 1 | eeiengineers-my.sharepoint.com |
|
Details | Domain | 1 | netorg5047480-my.sharepoint.com |
|
Details | Domain | 1 | matx-my.sharepoint.com |
|
Details | Domain | 1 | priority1inc-my.sharepoint.com |
|
Details | Domain | 1 | westgatemfg-my.sharepoint.com |
|
Details | Domain | 1 | shawlundquist-my.sharepoint.com |
|
Details | File | 48 | 1.html |
|
Details | File | 16 | next.php |
|
Details | Url | 1 | https://twitter.com/james_inthe_box/status/1069611890802778112?s=20 |
|
Details | Url | 1 | https://twitter.com/korbend_intel/status/1163929665230299137?s=20 |
|
Details | Url | 1 | https://twitter.com/p5yb34m/status/1167130345965117440?s=20 |
|
Details | Url | 1 | https://twitter.com/james_inthe_box/status/1075766442849533952?s=20 |
|
Details | Domain | 61 | login.microsoftonline.com |
|
Details | Domain | 2 | hostingerapp.com |
|
Details | Domain | 1373 | twitter.com |
|
Details | Domain | 1 | 09jsl8-msd9smdi-29ims.hostingerapp.com |
|
Details | Domain | 1 | brait3rm-pr0slamdoc8r.hostingerapp.com |
|
Details | Domain | 1 | crearny-piesugat.hostingerapp.com |
|
Details | Domain | 1 | dreamlessdocb-offlinprodoc.hostingerapp.com |
|
Details | Domain | 1 | ericbrown-scudoc.hostingerapp.com |