New PowerExchange Backdoor Used in Iranian Cyber Attack on UAE Government
An anonymous United Arab Emirates (UAE) government organisation was the target of a "simple yet effective" backdoor known as PowerExchange that was presumably created by an Iranian threat actor.
A recent study from Fortinet FortiGuard Labs claims that the intrusion used email phishing as its initial access point and resulted in the execution of a.NET executable that was attached as a ZIP file.
The malware, which pretends to be a PDF file, serves as a dropper for the final payload to run, which ultimately starts the backdoor read more New PowerExchange Backdoor Used in Iranian Cyber Attack on UAE Government.
With ReconBee.com Stay ahead of the latest threats with in-depth coverage of cyber attacks and cybersecurity trends, and the latest cybersecurity news.