New TA866 Threat Group Selectively Targets U.S. and German Organizations
New TA866 Threat Group Selectively Targets U.S. and German Organizations
13 February 2023
Proofpoint security experts uncovered a threat actor, tracked as TA886, infecting companies in the U.S. and Germany with the new WasabiSeed and Screenshotter malware. The custom malware can perform surveillance and steal data. Hackers push their malware via phishing emails that include Microsoft Publisher (.pub) attachments with malicious macros or PDFs containing URLs that download JavaScript files.