Cymulate named a Customers' Choice in 2025 Gartner® Peer Insights™
Learn More
New Gartner® Report: Strategic Roadmap for CTEM
Learn More
New Integration Partnership with WIZ!
Learn More
Threat Exposure Validation Impact Report 2025
Learn More

Ukraine CERT-UA: Compromised Email Address Used To Deliver Malware Variants

February 2, 2023

An adversary was discovered using a compromised e-mail address to send phishing emails with a malicious PDF attachment. The files used in the attack were protected by VMProtect to hinder analysis. Successful intrusions resulted in systems infected with variants from the RomCom, FateGrab, and StealDeal malware families.