Zero-Day Exploit Used In Phishing Campaign

HK
Holland & Knight

Contributor

Holland & Knight is a global law firm with nearly 2,000 lawyers in offices throughout the world. Our attorneys provide representation in litigation, business, real estate, healthcare and governmental law. Interdisciplinary practice groups and industry-based teams provide clients with access to attorneys throughout the firm, regardless of location.
In March 2016, a financially motivated threat actor launched several tailored spear phishing campaigns primarily targeting the retail, restaurant and hospitality industries.
United States Technology

Christopher Cwalina is a Partner in Holland & Knight's Washington D.C. office

In March 2016, a financially motivated threat actor launched several tailored spear phishing campaigns primarily targeting the retail, restaurant and hospitality industries. The emails contained variations of Microsoft Word documents with embedded macros that, when enabled, downloaded and executed a malicious downloader. The downloader was used by the threat actor to interact with compromised systems and move laterally across victim environments. Holland & Knight's Data Breach Team assisted a number of clients in investigating and remediating the fallout from this campaign.

Just today, FireEye issued an alert about this threat actor. More information can be found on the FireEye blog.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More