Threat Research

    FIN7 has been active since at least 2013, previously targeting sectors such as retail, hospitality, and financial services. The group shifted its monetization strategy from POS malware to big-game-hunting ransomware over time. Although widely analyzed, the malware’s code has changed very little since its early versions....
    Identifies the creation of PowerShell script files with certain names or suffixes commonly used by FIN7....
    Looking for Something?
    Threat Research Categories:
    Tags