Pick your Poison - A Double-Edged Email Attack
A sophisticated cyber-attack has been identified by the Cofense Phishing Defense Center, combining phishing techniques targeting Office365 credentials with malware delivery. The campaign uses a file deletion reminder as bait, exploiting a legitimate file-sharing service to increase credibility. Users are led to a fake Microsoft login page or prompted to download malware disguised as a OneDrive installer. The attack employs ConnectWise RAT, a legitimate remote administration tool exploited for malicious purposes. The malware establishes persistence through system services and registry modifications, highlighting the need for enhanced user awareness and education to combat such dual-threat approaches.
Pulse ID: 67f59820a8fab9815ec86721
Pulse Link: https://otx.alienvault.com/pulse/67f59820a8fab9815ec86721
Pulse Author: AlienVault
Created: 2025-04-08 21:41:51
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
