threat-intel
StrikeShark: investigating a new campaign delivering Cobalt Strike through SharkLoader
Medium
Summary
A new malware family, named SharkLoader, has been identified as part of a broader campaign targeting organizations globally, including diplomatic entities, government organizations, and software development companies. The malware acts as a loader, deploying Cobalt Strike Beacon after exploiting vulnerabilities in internet-facing applications like Microsoft Exchange and Openfire Server. Initial investigations suggest opportunistic exploitation of publicly available vulnerabilities and a broad geographic reach, with attribution currently unclear.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
