threat-intel
Phishers Gain Persistence at EU, Asia Hospitality Orgs
High
Summary
Phishing campaigns targeting hospitality organizations in Europe and Asia are utilizing malicious zip files containing disguised image files to install persistent malware. These attacks, observed by Microsoft and Trend Micro, leverage social engineering tactics, including impersonating guest complaints, and employ techniques like authentication laundering and blockchain-based C2 communication to establish long-term remote access and steal credentials. The campaigns utilize Node.js and TONResolver malware.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
