Post-DEF CON Phishing Campaign Delivered AMOS And NetSupport Malware

https://informationsecuritybuzz.com/wp-content/uploads/DEFCON-Phishing.png

A phishing campaign targeting attendees of Black Hat and DEF CON conferences involved distributing information-stealing malware and remote access malware via a malicious Google Doc and fake DocSend installers for macOS and Windows.

The Huntress team learned about the phishing attack after one of its researchers received a direct message on X on August 9. The message came from an account that claimed to be the vice president and marketing head of CoinDesk and wanted to know about the researcher’s plans to attend future conferences.

The researcher spotted the scam but kept the conversation going to find out what the attacker was trying to do. Huntress later found the same account approaching other conference attendees with similar messages and posting content apparently intended to make the account look legitimate.

The threat actor eventually sent a Google Doc presented as a planning document for the proposed conference. It appeared to be...

Copyright of this story solely belongs to informationsecuritybuzz.com. To see the full text click HERE

Read more