Cyware Weekly Threat Intelligence July 19–23, 2021

Weekly Threat Briefing • July 23, 2021
Weekly Threat Briefing • July 23, 2021
The Good
This week brings Kaseya attack victims a fresh piece of good news in the form of a universal decryptor. Seems like the nightmare is finally over. Arrests of cybercriminals always set us in the right mood for the weekend. The individual responsible for the mega-Twitter hack last year has been arrested from a Spanish town.
The Bad
Commercial spyware has always been a cause of concern in the cyber landscape. One such spyware—Pegasus— was used to target thousands of smartphones to pilfer confidential information. The Olympics are here and hackers are busy taking advantage of it. Data from the Tokyo Olympic ticket gateway were posted on a leak forum. Identity theft is not a joke, especially not when hackers exploit the recent condo-collapse tragedy to steal the identity of the deceased.
New Threats
A new cyberespionage campaign was initiated this week. The campaign is conducted by a new group dubbed TA2721, which is spreading Bandook. Threat actors, time and again, try to come up with new attack devices. In one such case, they were found disseminating 11 apps on Google Play Store that were propagating the Joker malware. Although crypto scams are nothing new, however, now an advance fee scam has been observed that promises crypto riches via a WhatsApp conversation.