#mixshell

[ follow ]
fromTheregister
1 day ago

ZipLine cyber attack uses White House butler pic

Instead of emailing a malicious link in an unsolicited email, the miscreants initiate contact through the organization's public Contact Us form, tricking the victim into starting the conversation and allowing the attackers to bypass email filters, according to Check Point Research, which uncovered the phishing campaign and dubbed it ZipLine. The attackers followed up via email with a series questions stretched over weeks and a meeting request before finally delivering a ZIP archive that ultimately deploys MixShell, a custom, in-memory implant.
Information security
Information security
fromThe Hacker News
2 days ago

MixShell Malware Delivered via Contact Forms Targets U.S. Supply Chain Manufacturers

A social-engineering campaign called ZipLine targets supply-chain manufacturing firms via Contact Us forms, delivering MixShell in-memory malware concealed in weaponized ZIPs after weeks-long trust-building.
[ Load more ]