Topic: malicious zip

  • Phishing Alert: Fake NDAs Sent Via "Contact Us" Forms Target Manufacturers

    Phishing Alert: Fake NDAs Sent Via "Contact Us" Forms Target Manufacturers

    A sophisticated phishing campaign targets industrial and supply chain firms using deceptive "Contact Us" forms and prolonged professional emails to bypass security and build trust. Attackers use fake NDAs and malicious ZIP files to deploy the "MixShell" backdoor, which employs DNS tunneling for s...

    Read More »
  • FileFix Attack Evades Security with Cache Smuggling

    FileFix Attack Evades Security with Cache Smuggling

    A new FileFix social engineering attack uses cache smuggling to deliver malware undetected by disguising itself as a Fortinet VPN Compliance Checker and tricking users into executing hidden PowerShell commands. The attack involves copying a text string that secretly contains a script to search br...

    Read More »