Inside the incident: Uncovering an advanced phishing attack
Tags
country: | Russia |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Credentials - T1589.001 Email Account - T1087.003 Phishing - T1660 Phishing - T1566 Server - T1583.004 Server - T1584.004 Software - T1592.002 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | ddc4659c-a189-43ae-98c9-b9b78a36cf2e |
Fingerprint | 58870d1b3e147e4d |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Dec. 10, 2024, midnight |
Added to db | Dec. 10, 2024, 4:31 p.m. |
Last updated | Dec. 10, 2024, 11:14 p.m. |
Headline | Inside the incident: Uncovering an advanced phishing attack |
Title | Inside the incident: Uncovering an advanced phishing attack |
Detected Hints/Tags/Attributes | 49/3/7 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 279 | ✔ | BleepingComputer | https://www.bleepingcomputer.com/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 4 | login.siffinance.com |
|
Details | Domain | 4 | siffinance.com |
|
Details | Domain | 4 | www.siffinance.com |
|
Details | Domain | 4 | ywnjb.siffinance.com |
|
Details | Domain | 4 | atoantibot.onrender.com |
|
Details | Domain | 4 | file365-cloud.s3.eu-west-2.amazonaws.com |
|
Details | IPv4 | 4 | 138.199.52.3 |