Under the pretense of phony job applications, a spear-phishing email campaign targeting recruiters with a JavaScript backdoor dubbed More_eggs has been spotted. This suggests that attempts to target the industry are ongoing.
According to a study by Trend Micro researchers Ryan Soliven, Maria Emreen Viray, and Fe Cureg, a recruitment officer was duped by a sophisticated spear-phishing bait into downloading and running a malicious file that was disguised as a résumé, which resulted in a more_eggs backdoor infection.
Malicious software known as More_eggs, which is offered as malware-as-a-service (MaaS), has the ability to steal credentials, including those linked to email accounts, IT administrator accounts, and online bank accounts.
It is linked to a threat actor known as the Golden Chickens group read more about Fake Job Applications Deliver Dangerous More eggs Malware to HR Professionals.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions
