Ukraine CERT-UA: Compromised Email Address Used To Deliver Malware Variants
An adversary was discovered using a compromised e-mail address to send phishing emails with a malicious PDF attachment.
The files used in the attack were protected by VMProtect to hinder analysis.
Successful intrusions resulted in systems infected with variants from the RomCom, FateGrab, and StealDeal malware families.
Featured Resources
Subscribe to Our Blog
Subscribe now to get the latest insights, expert tips and updates on threat exposure validation.
Subscribe