Tag: Threat Analysis Group

APT41 Uses Open Source GC2 Tool to Target Media and Job Sites Google Reveals
News

APT41 Uses Open Source GC2 Tool to Target Media and Job Sites Google Reveals

In the context of greater misuse of Google's infrastructure for harmful purposes, a Chinese nation-state group targeted an unknown Taiwanese media outlet to deliver the open-source red teaming tool known as Google Command and Control (GC2). The IT giant's Threat Analysis Group (TAG) identified the threat actor as HOODOO, also known as APT41, Barium, Bronze Atlas, Wicked Panda, and Winnti, which it tracks under the geological and geographically themed appellation HOODOO. The assault begins with a phishing email that links to a password-protected file on Google Drive. This password-protected file then uses the Go-based GC2 tool to read commands from Google Sheets and exfiltrate data read more APT41 Uses Open Source GC2 Tool to Target Media and Job Sites Google Reveals. With ReconBe...
Hackers used spyware made in Spain to target users in the UAE, Google says
News

Hackers used spyware made in Spain to target users in the UAE, Google says

Google announced the existence of Variston, a malware distributor that was previously unknown, in November 2022. The United Arab Emirates is where Google researchers claim they have observed hackers using Variston's tools. According to a report released on Wednesday by Google's Threat Analysis Group (TAG), hackers were found to be targeting users of Samsung's native Android browser, which is a modified version of Chromium, who were located in the United Arab Emirates. In order to access the targets, the hackers sent text messages containing one-time web URLs that were chained together and used as vulnerabilities. According to a recent blog post by TAG read more Hackers used spyware made in Spain to target users in the UAE, Google says. With ReconBee.com Stay ahead of the latest ...