Information Security News mailing list archives

FBI re-sends alert about supply chain attacks for the third time in three months


From: InfoSec News <alerts () infosecnews org>
Date: Tue, 31 Mar 2020 06:46:49 +0000 (UTC)

https://www.zdnet.com/article/fbi-re-sends-alert-about-supply-chain-attacks-for-the-third-time-in-three-months/

By Catalin Cimpanu
Zero Day
ZDNet.com
March 31, 2020

The FBI has issued an alert on Monday about state-sponsored hackers using the
Kwampirs malware to attack supply chain companies and other industry sectors as
part of a global hacking campaign.

This marks the third alert about this particular group sent this year, in as
many months, after the FBI sent alerts on January 6 and February 5.

This time around, the FBI highlighted that some of the group's targets are
organizations in the healthcare industry, currently grappling with the
coronavirus (COVID-19) outbreak.

Besides sending out a PIN (Private Industry Notification), the FBI has also
published two Flash alerts, one containing YARA rules to identify the group's
Kwampirs malware on infected networks, and the second containing a technical
report, complete with IOCs (indicators of compromise).

[...]



--
Subscribe to InfoSec News
https://www.infosecnews.org/subscribe-to-infosec-news/
https://twitter.com/infosecnews_


Current thread: