Strikes with commercial malware against organizations in Kazakhstan

NetmanageIT OpenCTI - opencti.netmanageit.com

Strikes with commercial malware against organizations in Kazakhstan



SUMMARY :

BI.ZONE experts have been monitoring the activities of a threat group called Bloody Wolf since late 2023. This group targets organizations in Kazakhstan using STRRAT, a commercial malware known as Strigoi Master. The attackers employ phishing emails posing as communications from government agencies, with attached PDFs containing malicious links. These links lead to the download of STRRAT, along with a Java installation guide required for the malware's operation. The malware exhibits various capabilities, including keylogging, data exfiltration, remote control, and encryption of user files.

OPENCTI LABELS :

phishing,strrat,remote access,data theft,strigoi master


Open in NetmanageIT OpenCTI Public Instance with below link!


Use public read only username and password on login page.

NOTE : Use Public READ only user credentials on login page banner.


Strikes with commercial malware against organizations in Kazakhstan