April 25, 2023, 10:10 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Key Findings:



  • In this report we reveal new findings related to Educated Manticore, an activity cluster with strong overlap with Phosphorus, an Iranian-aligned threat actor operating in the Middle East and North America.

  • Like many other actors, Educated Manticore has adopted recent trends and started using ISO images and possibly other archive files to initiate infection chains. In the report we reveal Iraq-themed lures, most likely used to target entities in Israel

  • The actor has significantly improved its toolset, …

actor america archive arsenal cluster entities files findings images infection iran iranian iraq iso israel key manticore middle east north north america phosphorus report target targeting techniques threat threat actor tools trends

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Security Analyst

@ Oracle | United States

Associate Vulnerability Management Specialist

@ Diebold Nixdorf | Hyderabad, Telangana, India

Cybersecurity Architect, Infrastructure & Technical Security

@ KCB Group | Kenya