Jan. 18, 2024, 3:21 p.m. |

GovInfoSecurity.com RSS Syndication www.govinfosecurity.com

'Coldriver' Has Been Sending Backdoors Embedded in PDFs Since November 2022
A Russian domestic intelligence agency hacking group known for long-lasting logon credential phishing campaigns against Western targets is now deploying malware embedded into PDFs, say security researchers from Google. "Coldriver" is using a family of backdoors Google dubs Spica.

agency backdoors campaigns coldriver credential credential phishing embedded family fsb google hacking hacking group intelligence intelligence agency logon malware november pdfs phishing phishing campaigns researchers russian russian fsb security security researchers western

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Senior Security Researcher - Linux MacOS EDR (Cortex)

@ Palo Alto Networks | Tel Aviv-Yafo, Israel

Sr. Manager, NetSec GTM Programs

@ Palo Alto Networks | Santa Clara, CA, United States

SOC Analyst I

@ Fortress Security Risk Management | Cleveland, OH, United States