Contact

TimbreStealer campaign targets Mexican users with financial lures

NetmanageIT OpenCTI - opencti.netmanageit.com

TimbreStealer campaign targets Mexican users with financial lures



SUMMARY :

A new spam campaign distributing the TimbreStealer information stealer malware has been targeting users in Mexico since November 2023. The phishing emails contain financial themes and trick the user into downloading and executing malware from compromised websites. TimbreStealer exhibits sophisticated techniques like API hashing, Heaven's Gate, and process hollowing to evade detection.

OPENCTI LABELS :

timbrestealer,info stealer,phishing,financial lure,process hollowing,api hashing


Open in NetmanageIT OpenCTI Public Instance with below link!


Use public read only username and password on login page.

NOTE : Use Public READ only user credentials on login page banner.


TimbreStealer campaign targets Mexican users with financial lures