Cybersecurity researchers from Sophos X-Ops have discovered a targeted malspam operation deploying password-stealing malware using social engineering tactics. The attackers send complaints or information requests to establish trust, before sharing malware hidden in password-protected archive files. The large files, designed to evade detection, connect to a Telegram channel for command-and-control purposes, exfiltrating data without establishing persistence on the host machine.
![](https://healsecurity.com/wp-content/uploads/2024/07/group-ibs-threat-intelligence-and-defence-centre-equip-undergraduates-with-sophisticated.jpg)
Group-IB’s Threat Intelligence and Defence Centre Equip Undergraduates with Sophisticated Cybersecurity Technologies to Boost Threat Analysis and Enhance Cyber Resilience for Campus Start-ups
Hey there from the heart of the San Francisco Bay Area! It’s an absolute pleasure to have you back again for our chat on some