VLC player launches cobalt strikes on Oz

@ 2023/01/16
The malware looks for healthcare institutions

The VLC multimedia player is being used to deliver Cobalt Strike beacons to targets in Australia.

The campaign includes SEO poisoning, and the Gootkit loader malware tab, and targets victims searching for healthcare institutions in Australia.

Trend Micro spotted the attack and described how the threat actors created a malicious website, designed to look like a forum, where a user shared a healthcare-related agreement document template inside a ZIP archive in response to a query.

To get the website to rank high on Google, they “poisoned” the search engine results pages by adding the link to the malicious site in social media posts.

No comments available.