Cyber Attacks on Government Agencies: Detect and Investigate

June 4, 2025, 8:45 p.m.

Description

This analysis examines cyber threats targeting government institutions worldwide, focusing on three case studies: a phishing email targeting the South Carolina Department of Employment and Workforce, a fraudulent domain mimicking the U.S. Social Security Administration, and a malicious PDF posing as a South African Judiciary notice. The study demonstrates how ANY.RUN's solutions, including Threat Intelligence Lookup, Interactive Sandbox, and YARA Search, can be utilized to detect, analyze, and mitigate these threats. Key findings include the use of FormBook stealer, remote access tools, and credential harvesting techniques. The analysis provides actionable insights for government cybersecurity teams to enhance their defensive strategies and response capabilities.

Date

  • Created: June 4, 2025, 7:24 p.m.
  • Published: June 4, 2025, 7:24 p.m.
  • Modified: June 4, 2025, 8:45 p.m.

Indicators

  • dfbbc198e7cb36ca31a5cb9dfd859955c4366b94f4a87c2a03102d60168eb74d
  • documentssagov.com

Attack Patterns

Additional Informations

  • Government
  • South Africa
  • United States of America