These campaigns were all observed between mid-May and early July of this year, and can likely be attributed to one, or possibly two, groups. The attacks have become more sophisticated, and have evolved to evade detection on a continual basis. Other researchers have attributed these attacks to a group known as the Cobalt Gang, which has continued its activities even after the arrest of its alleged leader in Spain this year.
ref:https://blog.talosintelligence.com/2018 ... order.html
ref:https://blog.talosintelligence.com/2018 ... order.html
Attachments
pw_infected
(1.66 MiB) Downloaded 29 times
(1.66 MiB) Downloaded 29 times