cognitive cybersecurity intelligence

News and Analysis

Search

Qakbot Attackers Remain Alive and Quacking, Researchers Find

Qakbot-backed phishing emails, distributing Windows shortcut files with potentially malicious content, continue despite the FBI-led Operation Duck Hunt disrupting part of the botnet infrastructure. Cybersecurity researchers suggest only command-and-control servers were impacted while spam delivery infrastructure wasn’t. Phishing emails include Zip archives that, once opened, install the Remcos backdoor and download ransomware like Knight. Qakbot remains affiliated with Knight, but its exact role is unclear.

Source: www.govinfosecurity.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts