Analysis of Suspected APT Attack Activities by “Silver Fox”

July 10, 2024, 10:31 a.m.

Description

This document examines the recent activities of the Silver Fox cybercrime group, which has traditionally targeted financial and tax entities but has now shifted its focus towards impersonating national institutions and security companies. The analysis involves a phishing website, Winos remote control samples, a downloader trojan, and a PowerShell obfuscation tool. The group's tactics suggest a potential overlap between cybercrime and APT (Advanced Persistent Threat) operations, necessitating further monitoring.

Date

Published Created Modified
July 10, 2024, 10:19 a.m. July 10, 2024, 10:19 a.m. July 10, 2024, 10:31 a.m.

Indicators

Attack Patterns