Pawn Storm

General News

Summary

Trend has been tracking this group for over the last decade, releasing reports in 2014 and 2017 on their latest activities. In this most recent report, Trend sheds light on a credential theft phishing campaign that is all too common in the current cyber threat landscape. The 15-page report, available here (pdf), shows how Pawn Storm operators started using stolen email credentials from “high-profile targets” to send out spam messages while masking their tracks using commercial VPN providers. The report concludes with several good tips for organizations of any size to defend against these threats. Things like requiring two-factor authentication, educating employees on common phishing techniques, and regularly monitoring infrastructure are bare bones basics that all organizations should be doing to defend against not just APT28’s latest techniques, but all cyber attacks.

Classifications

industries
Retail
applications
Security

AskAI Classifications

Labels
Cybersecurity Software SaaS Network Security

Linked Companies

WatchGuard
$250M to $500M