threat-intel
Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js Implant
High
Summary
A phishing campaign targeting hotels and hospitality organizations is underway, utilizing deceptive ZIP files containing Node.js implants to gain access to front-desk machines. The campaign, discovered by Microsoft, employs techniques like authentication laundering and leverages the TON blockchain for command and control, and is linked to previous ClickFix campaigns. The ultimate goals of the attackers remain unclear, but the sophistication of the attack warrants heightened vigilance.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
