#coldriver

[ follow ]
#clickfix
fromTechzine Global
1 week ago
Information security

Russia-linked COLDRIVER adopts ClickFix technique

COLDRIVER added ClickFix using BAITSWITCH downloader and SIMPLEFIX PowerShell backdoor with server-side selective delivery to target strategically important individuals.
fromThe Hacker News
1 month ago
Information security

New COLDRIVER Malware Campaign Joins BO Team and Bearlyfy in Russia-Focused Cyberattacks

COLDRIVER deployed ClickFix-style attacks using BAITSWITCH downloader to deliver SIMPLEFIX PowerShell backdoor, establishing persistence and storing encrypted payloads in the Windows Registry.
fromThe Hacker News
1 week ago

Google Identifies Three New Russian Malware Families Created by COLDRIVER Hackers

The findings come from Google Threat Intelligence Group (GTIG), which said the state-sponsored hacking crew has rapidly refined and retooled its malware arsenal merely five days following the publication of its LOSTKEYS malware around the same time. While it's currently not known for how long the new malware families have been under development, the tech giant's threat intelligence team said it has not observed a single instance of LOSTKEYS since disclosure.
Information security
[ Load more ]