Bumblebee Malware Returns with New Tricks Targeting U.S. Businesses
Following a four-month hiatus, the notorious malware loader and initial access broker known as Bumblebee has reappeared as part of a fresh phishing campaign that was noticed in February 2024.
The operation, according to enterprise security company Proofpoint, targets American businesses with voicemail-themed baits that link to OneDrive URLs.
The business stated in a report on Tuesday that "the URLs linked to a Word file with names such as "ReleaseEvans#96.docm" (the digits before the file extension varied). "The Word document spoofed the consumer electronics company Humane."
By utilizing VBA macros, opening the document initiates a PowerShell script that downloads and runs another PowerShell script from a remote server read more Bumblebee Malware Returns with New Tricks Targeting...

