Blind Eagle Hacks Colombian Institutions Using NTLM Flaw RATs and GitHub-Based Attacks
Since November 2024, a number of active campaigns targeting Colombian institutions and government bodies have been connected to the threat actor known as Blind Eagle.
According to a recent research by Check Point, the monitored campaigns had significant infection rates and were directed at Colombian judicial institutions as well as other public or private organizations.
One of these efforts, which occurred around December 19, 2024, affected around 1,600 individuals. Given Blind Eagle's focused APT strategy, this infection rate is noteworthy.
AguilaCiega, APT-C-36, and APT-Q-98 are additional tracking numbers for Blind Eagle, which has been operational since at least 2018 read more about Blind Eagle Hacks Colombian Institutions Using NTLM Flaw RATs and GitHub-Based Attacks.
Get...

