Bandook malware found targeting 'unusually wide variety' of industries, regions | SC Media

Bandook malware found targeting 'unusually wide variety' of industries, regions | SC Media

Security researchers are warning that the once-dormant Bandook malware family is back, possibly be part of a broader operation selling offensive hacking tools to governments and cybercriminal groups.


Check Point Research unveiled new research tracking a resurgence in the use of Bandook – a 13-year-old banking Trojan – across “an unusually wide variety of targeted sectors and locations.” Over the past year, the team has observed dozens of digitally signed variants of the malware being used in attacks against organizations in the United States, Singapore, Cyprus, Chile, Italy, Turkey Switzerland, Indonesia and Germany. The sectors targeted include government, finance, energy, food, healthcare, education, IT and legal.


Researchers said they only identified around 15 specific organizations that were targeted, indicating a much narrower scope even as the activity has been spread out across different countries and industries.


“This is not a large-scale attack, they’re not just spraying inboxes like we see with Emotet or Trickbot,” Michael Abramzon, the threat intelligence analysis team lead at Check Point, told SC Media in an interview. “These are targeted attacks but they’re spread over two years.”


According to A ..

Support the originator by clicking the read the rest link below.