TLDR: The threat actor TA866 has launched a new phishing campaign targeting North America, deploying known malware families including WasabiSeed and Screenshotter. The campaign involves sending thousands of invoice-themed emails containing decoy PDF files that, if clicked, lead to a multi-step infection chain resulting in the delivery of the malware payload. TA866, which was first documented in February 2023, is believed to be financially motivated. The campaign marks the return of the actor after a nine-month hiatus and closely resembles previous campaigns attributed to TA866. The latest attack chain primarily involves the use of PDFs with rogue OneDrive links, distributed using a spam service provided by TA571. The malware delivered in this campaign includes DarkGate, a Malware-as-a-Service tool sold on underground forums. The resurgence of TA866 follows the discovery of a new evasion tactic that misuses the caching mechanism of security products.
Watch out TA866 brings WasabiSeed & Screenshotter Malware, invoice phishing
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Fintech-in-Wealth-Management_-Disruption-and-Transformation.jpg)
Latest from Blog
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Decoding-Fintech-Licenses.jpg)
Cyberattack hits Selenium Grid for Crypto Mining – stay safe
Ongoing Cyberattack Targets Exposed Selenium Grid Services TLDR: Cyberattack targeting older versions of Selenium for crypto mining Threat actors using Selenium Grid services for illicit activities Cybersecurity researchers are warning about an
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Quantum-Computing-and-Finance.jpg)
Bridging the cyber talent gap: tips for CISOs
TLDR: – Global cyber threats have increased twofold in recent years, leading to a talent gap of nearly 4 million cyber professionals worldwide. – Existing cyber staff are under strain, with vacancies
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Demystifying-Fintech-Operations_-How-They-Work-and-Compete.jpg)
Deepfake dangers prompt urgent cybersecurity reevaluations for businesses
TLDR: AI-generated deepfake attacks are on the rise, leading companies to reassess their cybersecurity measures. Companies are developing deepfake response plans and running simulations to increase preparedness. Biometric authentication, once considered secure,
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Fintech-in-Emerging-Markets.jpg)
North Korean faces charges for cyberattacks on US targets
TLDR: A North Korean military intelligence operative has been indicted for orchestrating cyberattacks on U.S. hospitals, NASA, and military bases. Rim Jong Hyok, a member of the Andariel Unit, faces charges of
![](https://cybsecwizard.com/wp-content/uploads/2023/12/The-Role-of-AI-in-Fintech.jpg)
Analysts predict cybersecurity stocks will soar after CrowdStrike’s outage
“`html TLDR: CrowdStrike outage led to potential gains for cybersecurity rivals SentinelOne, Palo Alto Networks, and Microsoft’s cybersecurity business could benefit After a defective CrowdStrike update caused a global tech outage, analysts
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Fintech-in-Retail_-Enhancing-Customer-Experiences.jpg)
Bitsight’s Trust Management Hub: Revolutionizing Security Assessment Process
TLDR: Bitsight has released Trust Management Hub to streamline security assessments. The new solution reduces workload by 25% and improves the assessment cycle by 85%, helping teams close deals faster. Bitsight, a
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Bridging-Financial-Inequality_-Fintechs-Role-and-Potential.jpg)
North Korean hackers pivot to ransomware attacks
TLDR: North Korean hackers from APT45 have shifted from cyber espionage to ransomware attacks APT45 has targeted critical infrastructure and is linked to ransomware families SHATTEREDGLASS and Maui A North Korea-linked threat
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Fintech-in-Emerging-Markets.jpg)
Europe’s telecom, electricity sectors evaluated in new EU cybersecurity report
TLDR: EU releases risk assessment report on cybersecurity in telecommunications and electricity sectors Report highlights supply chain risks, shortage of cybersecurity professionals, and threats from cybercriminals and state-sponsored actors Summary: The European
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Near-Field-Communication-NFC-Explained.jpg)
Cyber insurance evolves to cover all your online needs
TLDR: Cyber insurance coverage is evolving to help raise security baselines across businesses. Only one-quarter of companies have a standalone cyber insurance policy. In today’s evolving cybersecurity landscape, cyber insurance coverage is
![](https://cybsecwizard.com/wp-content/uploads/2023/12/Decoding-Fintech-Licenses.jpg)
Study: CrowdStrike slashes losses, Fortune 500 set to save $54B
TLDR: Key Points: CrowdStrike outage will cost Fortune 500 $5.4 billion Cyber insurance will only cover 10-20% of losses In a report by Parametrix, it is estimated that the global IT outage