By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Independent News ExpressIndependent News Express
  • Home
  • International
    InternationalShow More
    United Nations
    4th International Conference On Financing For Development Delivers Renewed Hope And Action For Sustainable Development
    1 week ago
    The African Development Bank and the United Nations Human Settlements Programme (UN-Habitat) scale up drive for sustainable urbanization in Africa
    AfDB, UN-Habitat Scale Up Drive For Sustainable Urbanisation In Africa
    1 week ago
    UN
    North Africa: Green Climate Fund Approves Record $300m For FAO-designed Projects In Papua New Guinea, Saint Lucia, The Sahel
    1 week ago
    UNICEF
    How Wars Across Middle East, North Africa Affecting Children – UNICEF
    1 week ago
    UNDP
    UN Development Programme Welcomes Historic Deal On Sustainable Development Even Amidst Global Turmoil
    2 weeks ago
  • Africa
    Africa
    Show More
    Top News
    UN Women Kenya Trains Motorcycle Taxi Operators
    3 years ago
    Nigeria To Host Sahel Climate Fund Secretariat
    2 years ago
    Dangote Recounts Investors’ Bad Experience With AU Passports In Some African Nations
    2 years ago
    Latest News
    At Gender Statistics Forum, African Leaders Urge Renewed Commitment To Quality Gender Data
    5 days ago
    Ooni’s Wife, Olori Temitope Enitan-Ogunwusi Takes Ile Ife Royalty To ADWIN Launch In Cote d’Ivoire
    4 weeks ago
    Independent UN Body Finds Systemic Racism Against Africans And People Of African Descent
    1 month ago
    Public Exit: Why South Africa Businesses Are Moving To Private Cloud
    1 month ago
  • Corporate News
    • Media Outreach
  • Politics
    Politics
    Show More
    Top News
    Impunity, Insecurity Threaten Nigeria’s General Elections
    2 years ago
    Warri South Leaders Seek Review Of Delta South Senatorial Election Result
    2 years ago
    Obasa Returns As Speaker, Lagos House Of Assembly
    2 years ago
    Latest News
    Lagos LG Poll: I’ll Bring Government Closer To The People – APC Aspirant
    14 hours ago
    Lagos LG Poll: Tunde Disco/Ganiyu Obasa Intensify Campaign In Agege
    2 weeks ago
    PHOTOS: Vinod Obasa Joins Other Lagos APC LG Candidates At Sanwo-Olu’s Reception
    2 weeks ago
    Lagos Lawmaker Praises Tinubu For Helping Nigeria Breathe Again
    1 month ago
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
    News
    Show More
    Top News
    Ondo Governor, Akeredolu Begins Construction Of First Flyover In Akure
    2 years ago
    Celebration Of Life: Reverend Adewumi Jegede Of Later House Of God Assembly Buried Amid Pomp
    1 year ago
    Pa Abdulfatah Amoo Ayanwale
    Pa Ayanwale Dies At 76, Fidau Prayers Holds 8 August
    2 years ago
    Latest News
    She Was an Amazon Who Left Indelible Marks — Ayorinde Pays Tribute to Late Ambassador Adefope
    4 days ago
    IMSUAA 2025 Convention Mascot: A Symbol Of Love, Unity And Cultural Diversity
    5 days ago
    Lagos Hosts Groundbreaking Revenue Recovery Summit
    5 days ago
    CFE Foundation Seeks Sponsors to Sustain Humanitarian Programs Amidst Funding Challenges
    1 week ago
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
    Entertainment
    Show More
    Top News
    Whiskey: Burna Boy’s Story On Pollution, Flood And Negligence
    3 years ago
    XPression With CDO Train To Hit Nigerian Campuses Soon
    2 years ago
    Asake Out With 14-track ‘Work of Art’ Album
    2 years ago
    Latest News
    Purp vs Raymu: Who Will Be Crowned The Next Nigerian Idol?
    4 days ago
    Local Content Powers African Dreams
    1 week ago
    The Drama Returns As BBNaija ‘No Loose Guard’ Reunion Premieres June 23
    3 weeks ago
    You Can’t Fake it — James Omekwe On MultiChoice’s Impact On African Filmmaking
    1 month ago
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
    Lifestyle
    Show More
    Top News
    Lagos To Celebrate Annual Yoruba Culture Last Week Of September
    1 year ago
    Glame Attires Steals The Show At Warri Fashion Lifestyle Festival
    2 years ago
    2nd International Conference for Event Ushers Holds In Ibadan
    5 months ago
    Latest News
    Noble Call to Service: Inside the Induction of 104 New Knights of St. Mulumba
    4 weeks ago
    Joining The Knighthood Brings You Closer To God -Sir Eva Njemanze
    4 weeks ago
    Africa Tech Festival Unveils Strategic Themes For 2025 Event,
    4 weeks ago
    Lagos SWAN Joins UN To Celebrate World Nutrition Month At Unilag Confab
    2 months ago
  • Business
    • Banking & Finance
    • Oil & Gas
    BusinessShow More
    Petralon's Nigerian Drilling Campaign to Boost Offshore Oil Output
    Petralon’s Nigerian Drilling Campaign To Boost Offshore Oil Output
    4 days ago
    Year 2025
    How Nigeria Can Unleash Its Economic Potential – IMF
    5 days ago
    GTCO Plc Becomes 1st West Africa’s Financial Services Institution To Achieve Listing And Trading Of Its Ordinary Shares On London Stock Exchange
    5 days ago
    Unity Bank
    Unity Bank Empowers Young Entrepreneurs With ₦16M Business Grant
    1 week ago
    NNPCL Board Accused Of Planning Lavish Party In Rwanda Amidst N210tn Financial Scandal
    3 weeks ago
  • Health
    Health
    Show More
    Top News
    In Ghana, Demands For Body Enhancement Surgeries On The Rise
    2 years ago
    Women And Men Mistakenly Given Different Advice To Prevent Heart Disease
    3 years ago
    FIND Welcomes Adoption Of Historic WHO Assembly Resolution On Diagnostics
    2 years ago
    Latest News
    SSB Tax: Industry Actors, Paid Mouthpieces Slammed Over Campaign To Stop CAPPA
    3 days ago
    CAPPA Warns Nigerians On Excessive Consumption Of Sugar-sweetened Beverages, Says Nigeria Is In The Throes Of Public Health Crisis
    4 days ago
    Rising Non-communicable Diseases: WHO Wants Higher Taxes For Sugary Drinks, Alcohol, Tobacco
    6 days ago
    Online Education Can Enhance Clinical Guideline Use By Over 50% 
    4 weeks ago
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Reading: HP Catches Cybercriminals ‘Cat-Phishing’ Users
Share
Notification Show More
Aa
Independent News ExpressIndependent News Express
Aa
  • Home
  • International
  • Africa
  • Corporate News
  • Politics
  • News
  • Entertainment
  • Lifestyle
  • Business
  • Health
  • More
Search
  • Home
  • International
  • Africa
  • Corporate News
    • Media Outreach
  • Politics
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
  • Business
    • Banking & Finance
    • Oil & Gas
  • Health
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Have an existing account? Sign In
Follow US
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Independent News Express > Blog > Tech > HP Catches Cybercriminals ‘Cat-Phishing’ Users
Tech

HP Catches Cybercriminals ‘Cat-Phishing’ Users

Last updated: 2024/05/21 at 6:18 AM
1 year ago
Share
SHARE

HP Inc has issued its quarterly HP Wolf Security Threat Insights Report, showing attackers are relying on open redirects, overdue invoice lures,and Living-off-the-Land (LotL) techniques to sneak past defences.The report provides an analysis of real-world cyberattacks, helping organizations to keep up with the latest techniques cybercriminals use to evade detection and breach PCsin the fast-changing cybercrime landscape.

Based on data from millions of endpoints running HP Wolf Security, notable campaigns identified by HP threat researchers include:

  • Attackers using open redirects to ‘Cat-Phish’ users:In an advanced WikiLoader campaign, attackers exploited open redirect vulnerabilities within websites to circumvent detection. Users were directed to trustworthy sites, often through open redirect vulnerabilities in ad embeddings. They were then redirected to malicious sites – making it almost impossible for users to detect the switch.
  • Living-off-the-BITS:Several campaigns abused the Windows Background Intelligent Transfer Service (BITS) – a legitimate mechanism used by programmers and system administratorsto download or upload files to web servers and file shares. This LotLtechnique helped attackers remain undetected by using BITSto download the malicious files.
  • Fake invoices leading to HTML smuggling attacks:HP identified threat actorshiding malware inside HTML files posing as delivery invoices which,once opened in a web browser, unleash a chain of events deploying open-source malware, AsyncRAT. Interestingly, the attackers paid little attention to the design of the lure, suggesting theattackwas created with only a small investment of time and resources.

Patrick Schläpfer, Principal Threat Researcherin the HP Wolf Security threat research team, comments:

“Targeting companies with invoice lures is one of the oldest tricks in the book, but it can still be very effective and hence lucrative. Employees working in finance departments are used to receiving invoices via email, so they are more likely to open them. If successful, attackers can quickly monetize their access by selling it to cybercriminal brokers, or by deploying ransomware.”

- Advertisement -
Ad imageAd image

By isolating threats that have evaded detection-based tools – but still allowing malware to detonate safely – HP Wolf Security has specific insight into the latest techniques used by cybercriminals. To date, HP Wolf Security customers have clicked on over 40 billion email attachments, web pages, and downloaded files with no reported breaches.

The report details how cybercriminals continue to diversify attack methods to bypass security policies and detection tools. Other findings include:

  • At least 12% of email threats identified by HP Sure ClickEnterprise*bypassed one or more email gateway scanners.
  • The top threat vectors in Q1 were email attachments (53%), downloads from browsers (25%) and other infection vectors, such as removable storage – like USB thumb drives – and file shares (22%).
  • This quarter, at least 65% ofdocumentthreats relied on an exploit to execute code, rather than macros.

Dr. Ian Pratt, Global Head of Security for Personal Systems at HP Inc., comments that “Living-off-the-Land techniques expose the fundamental flaws of relying on detection alone. Because attackers are using legitimatetools, it’s difficult to spot threats without throwing up a lot of disruptive false positives. Threat containment provides protection even when detection fails, preventing malware from exfiltrating or destroyinguser dataor credentials, and preventing attacker persistence. This is whyorganizations shouldtake a defence-in-depth approach to security, isolating and containing high-risk activities to reduce their attack surface.”

HP Wolf Security** runs risky tasks in isolated, hardware-enforced disposable virtual machines running on the endpoint to protect users, without impacting their productivity. It also captures detailed traces of attempted infections. HP’s application isolation technology mitigates threats that slip past other security tools and provides unique insights into intrusion techniques and threat actor behavior.

This data was gathered from consenting HP Wolf Security customers from January-March 2024.

HP Inc. (NYSE: HPQ) is a global technology leader and creator of solutions that enable people to bring their ideas to life and connect to the things that matter most. Operating in more than 170 countries, HP delivers a wide range of innovative and sustainable devices, services and subscriptions for personal computing, printing, 3D printing, hybrid work, gaming, and more.

HP Wolf Security is world class endpoint security. HP’s portfolio of hardware-enforced security and endpoint-focused security services are designed to help organizations safeguard PCs, printers, and people from circling cyber predators. HP Wolf Security provides comprehensive endpoint protection and resiliency that starts at the hardware level and extends across software and services.

You Might Also Like

Africa Tech Festival Unveils Strategic Themes For 2025 Event,

How Protected Are Your Printers For The Coming Of Quantum Computing ?

Revolutionising Cloud Access for Nigerian Business with Local Innovation

How Nigerian Schools Can Innovate With AI – Expert

HP Selects Nigeria Cohort for 2025 Digital Equity Accelerator

TAGGED: HP
INadminNG May 21, 2024 May 21, 2024
Share This Article
Facebook Twitter Whatsapp Whatsapp LinkedIn Telegram Email Print
Previous Article The Golden 9’s Rugby League Tourney: Bulls Emerge As Champions As Organisers Hail Teams
Next Article Abioye Advocates Empowering Nigerian Youth Tech Talent For Future Of Football Analysis
about us

Independent News Express (iNews Express), a publication of 4Ds Nigeria Limited, is birthed out of the desires of the founding fathers to report News as it is.

We value Professionalism, Excellence, Service, Creativity and Integrity.

The Company

  • Home
  • About Us
  • Contact Us
  • Privacy & Policy

Quick Links

  • Advertise with us
  • Newsletters
  • Deal

Categories

Find Us on Socials

© Independent News Express. All Rights Reserved.
Welcome Back!

Sign in to your account

Lost your password?