Cyware Weekly Threat Intelligence - August 09–13

Weekly Threat Briefing • August 13, 2021
Weekly Threat Briefing • August 13, 2021
The Good
Is the enemy of my enemy my friend? Probably not. But, it’s always fun to see threat actors pitting against each other. One such unhappy affiliate from the Conti gang released sensitive information as the former was unhappy about their payment. Talking about hackers, a tool has been developed that can restrict hackers from abusing Cobalt Strike beacons for malware command and control.
The Bad
Given the choice between getting free vaccines and paying for a fake vaccine card, which one would you choose? ?Apparently, a lot of people are going for the latter, resulting in a rise in sales of such cards at underground marketplaces. In other news, a Chinese cyberespionage actor is posing as an Iranian threat actor and launching attacks against Israel. Crytek warned its customers of a ransomware attack by Egregor last year. Data was leaked. Yikes!
New Threats
This week left researchers questioning the characteristics of a new malware. This newly developed malware calls itself a ransomware but has the features of a wiper. Dubbed Chaos, it may be released in the wild soon. A new smishing scam is causing quite the chaos as it is very persuasive and impersonates an international parcel delivery firm. In another boat, a malvertising campaign was found using a rebranded version of the Cinobi trojan to target Japan.