‘Snatch’ Ransom Group Exposes Visitor IP Addresses

Credit to Author: BrianKrebs| Date: Wed, 27 Sep 2023 11:48:37 +0000

The victim shaming site operated by the Snatch ransomware group is leaking data about its true online location and internal operations, as well as the Internet addresses of its visitors, KrebsOnSecurity has found. The leaked data suggest that Snatch is one of several ransomware groups using paid ads on Google.com to trick people into installing malware disguised as popular free software, such as Microsoft Teams, Adobe Reader, Mozilla Thunderbird, and Discord.

Read more

Microsoft Teams used to deliver DarkGate Loader malware

Categories: Business

Categories: News

Tags: Microsoft Teams

Tags: DarkGate

Tags: Loader

Tags: Trojan

Tags: Sharepoint

Tags: AutoIt

Researchers have found a new distribution method for the DarkGate Loader which circumvents the security features in Microsoft Teams.

(Read more…)

The post Microsoft Teams used to deliver DarkGate Loader malware appeared first on Malwarebytes Labs.

Read more

Microsoft Teams used in phishing campaign to bypass multi-factor authentication

Categories: Business

Categories: News

Tags: Microsoft Teams

Tags: social engineering

Tags: bypass

Tags: MFA

Tags: authenticator

Attackers are using Microsoft Teams chats from compromised Microsft 365 tenants as credential theft phishing lures

(Read more…)

The post Microsoft Teams used in phishing campaign to bypass multi-factor authentication appeared first on Malwarebytes Labs.

Read more