Threat Research

    We have discovered new BTMOB RAT Android malware samples being distributed via websites mimicking legitimate services. These fake apps and pages impersonate well-known brands like Starlink, Google Chrome, Avast Antivirus, Roku, Amazon, and more. The primary targets of this campaign are users in Latin America....
    A threat actor has been using phishing emails with malicious HTML attachments to distribute Horabot malware, primarily targeting Spanish-speaking users. The campaign impersonates invoices to steal email credentials and spread banking trojans across Latin America. Horabot uses Outlook COM automation to send phishing emails from compromised inboxes, aiding lateral movement....
    Looking for Something?
    Threat Research Categories:
    Tags