By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Independent News ExpressIndependent News Express
  • Home
  • International
    InternationalShow More
    United Nations
    4th International Conference On Financing For Development Delivers Renewed Hope And Action For Sustainable Development
    6 days ago
    The African Development Bank and the United Nations Human Settlements Programme (UN-Habitat) scale up drive for sustainable urbanization in Africa
    AfDB, UN-Habitat Scale Up Drive For Sustainable Urbanisation In Africa
    7 days ago
    UN
    North Africa: Green Climate Fund Approves Record $300m For FAO-designed Projects In Papua New Guinea, Saint Lucia, The Sahel
    1 week ago
    UNICEF
    How Wars Across Middle East, North Africa Affecting Children – UNICEF
    1 week ago
    UNDP
    UN Development Programme Welcomes Historic Deal On Sustainable Development Even Amidst Global Turmoil
    1 week ago
  • Africa
    Africa
    Show More
    Top News
    Tanzania: United Nations Steps Up Efforts To Build Climate Resilience
    2 years ago
    Amnesty
    Stop Crackdown On Opposition, Amnesty Warns Tanzanian Govt
    2 years ago
    Coup Plotters Unite In War Against ECOWAS
    2 years ago
    Latest News
    At Gender Statistics Forum, African Leaders Urge Renewed Commitment To Quality Gender Data
    3 days ago
    Ooni’s Wife, Olori Temitope Enitan-Ogunwusi Takes Ile Ife Royalty To ADWIN Launch In Cote d’Ivoire
    4 weeks ago
    Independent UN Body Finds Systemic Racism Against Africans And People Of African Descent
    4 weeks ago
    Public Exit: Why South Africa Businesses Are Moving To Private Cloud
    1 month ago
  • Corporate News
    • Media Outreach
  • Politics
    Politics
    Show More
    Top News
    UI Alumni Association Hails Okowa’s Giant Strides In Delta State
    2 years ago
    Kwara Must Change
    Pre-Election Cases In Kwara State Gulps About N500m – Kwara Must Change
    2 years ago
    The Legacy of Chief Obafemi Awolowo: Lessons for Today’s Leaders in Nigeria
    7 months ago
    Latest News
    Lagos LG Poll: Tunde Disco/Ganiyu Obasa Intensify Campaign In Agege
    2 weeks ago
    PHOTOS: Vinod Obasa Joins Other Lagos APC LG Candidates At Sanwo-Olu’s Reception
    2 weeks ago
    Lagos Lawmaker Praises Tinubu For Helping Nigeria Breathe Again
    1 month ago
    LG Election: Stakeholders Appeal To APC Not To Allow Chairmen Run For 3rd term
    2 months ago
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
    News
    Show More
    Top News
    Ondo Governor, Akeredolu Begins Construction Of First Flyover In Akure
    2 years ago
    Celebration Of Life: Reverend Adewumi Jegede Of Later House Of God Assembly Buried Amid Pomp
    1 year ago
    Pa Abdulfatah Amoo Ayanwale
    Pa Ayanwale Dies At 76, Fidau Prayers Holds 8 August
    2 years ago
    Latest News
    She Was an Amazon Who Left Indelible Marks — Ayorinde Pays Tribute to Late Ambassador Adefope
    1 day ago
    IMSUAA 2025 Convention Mascot: A Symbol Of Love, Unity And Cultural Diversity
    2 days ago
    Lagos Hosts Groundbreaking Revenue Recovery Summit
    2 days ago
    CFE Foundation Seeks Sponsors to Sustain Humanitarian Programs Amidst Funding Challenges
    6 days ago
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
    Entertainment
    Show More
    Top News
    Family, Friends Celebrate As Princess Zara Raji Turns Two
    2 years ago
    50th PFA Awards
    Davido Wows Audience At 50th PFA Awards In UK
    2 years ago
    Veteran Journalist Gives Out Daughter In Marriage In Lagos
    2 years ago
    Latest News
    Purp vs Raymu: Who Will Be Crowned The Next Nigerian Idol?
    2 days ago
    Local Content Powers African Dreams
    5 days ago
    The Drama Returns As BBNaija ‘No Loose Guard’ Reunion Premieres June 23
    2 weeks ago
    You Can’t Fake it — James Omekwe On MultiChoice’s Impact On African Filmmaking
    4 weeks ago
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
    Lifestyle
    Show More
    Top News
    Carnival Of Peace: Preparation Begins For The Mainland White Carnival In Lagos
    7 months ago
    Ilara-Epe Kingdom To Confer Chieftaincy Title On Trinidad and Tobago Envoy
    2 years ago
    Bishop Emmanuel Tasks Christians Worldwide On Dedication To God’s Service, As Blood Of Jesus Ministry Holds Ordination For Church Officers
    2 years ago
    Latest News
    Noble Call to Service: Inside the Induction of 104 New Knights of St. Mulumba
    3 weeks ago
    Joining The Knighthood Brings You Closer To God -Sir Eva Njemanze
    3 weeks ago
    Africa Tech Festival Unveils Strategic Themes For 2025 Event,
    4 weeks ago
    Lagos SWAN Joins UN To Celebrate World Nutrition Month At Unilag Confab
    1 month ago
  • Business
    • Banking & Finance
    • Oil & Gas
    BusinessShow More
    Petralon's Nigerian Drilling Campaign to Boost Offshore Oil Output
    Petralon’s Nigerian Drilling Campaign To Boost Offshore Oil Output
    2 days ago
    Year 2025
    How Nigeria Can Unleash Its Economic Potential – IMF
    3 days ago
    GTCO Plc Becomes 1st West Africa’s Financial Services Institution To Achieve Listing And Trading Of Its Ordinary Shares On London Stock Exchange
    3 days ago
    Unity Bank
    Unity Bank Empowers Young Entrepreneurs With ₦16M Business Grant
    6 days ago
    NNPCL Board Accused Of Planning Lavish Party In Rwanda Amidst N210tn Financial Scandal
    3 weeks ago
  • Health
    Health
    Show More
    Top News
    trachoma
    WHO Commends Benin, Mali For Eliminating Trachoma As Public Health Problem
    2 years ago
    Artificial Intelligence
    GE HealthCare Awarded $44m Grant To Develop Artificial Intelligence-Assisted Ultrasound Technology
    2 years ago
    Cholera Outbreak: CAPPA Tasks Govt On Need To Prioritise Access To Public Water
    1 year ago
    Latest News
    SSB Tax: Industry Actors, Paid Mouthpieces Slammed Over Campaign To Stop CAPPA
    13 hours ago
    CAPPA Warns Nigerians On Excessive Consumption Of Sugar-sweetened Beverages, Says Nigeria Is In The Throes Of Public Health Crisis
    2 days ago
    Rising Non-communicable Diseases: WHO Wants Higher Taxes For Sugary Drinks, Alcohol, Tobacco
    4 days ago
    Online Education Can Enhance Clinical Guideline Use By Over 50% 
    4 weeks ago
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Reading: HP Catches Cybercriminals ‘Cat-Phishing’ Users
Share
Notification Show More
Aa
Independent News ExpressIndependent News Express
Aa
  • Home
  • International
  • Africa
  • Corporate News
  • Politics
  • News
  • Entertainment
  • Lifestyle
  • Business
  • Health
  • More
Search
  • Home
  • International
  • Africa
  • Corporate News
    • Media Outreach
  • Politics
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
  • Business
    • Banking & Finance
    • Oil & Gas
  • Health
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Have an existing account? Sign In
Follow US
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Independent News Express > Blog > Tech > HP Catches Cybercriminals ‘Cat-Phishing’ Users
Tech

HP Catches Cybercriminals ‘Cat-Phishing’ Users

Last updated: 2024/05/21 at 6:18 AM
1 year ago
Share
SHARE

HP Inc has issued its quarterly HP Wolf Security Threat Insights Report, showing attackers are relying on open redirects, overdue invoice lures,and Living-off-the-Land (LotL) techniques to sneak past defences.The report provides an analysis of real-world cyberattacks, helping organizations to keep up with the latest techniques cybercriminals use to evade detection and breach PCsin the fast-changing cybercrime landscape.

Based on data from millions of endpoints running HP Wolf Security, notable campaigns identified by HP threat researchers include:

  • Attackers using open redirects to ‘Cat-Phish’ users:In an advanced WikiLoader campaign, attackers exploited open redirect vulnerabilities within websites to circumvent detection. Users were directed to trustworthy sites, often through open redirect vulnerabilities in ad embeddings. They were then redirected to malicious sites – making it almost impossible for users to detect the switch.
  • Living-off-the-BITS:Several campaigns abused the Windows Background Intelligent Transfer Service (BITS) – a legitimate mechanism used by programmers and system administratorsto download or upload files to web servers and file shares. This LotLtechnique helped attackers remain undetected by using BITSto download the malicious files.
  • Fake invoices leading to HTML smuggling attacks:HP identified threat actorshiding malware inside HTML files posing as delivery invoices which,once opened in a web browser, unleash a chain of events deploying open-source malware, AsyncRAT. Interestingly, the attackers paid little attention to the design of the lure, suggesting theattackwas created with only a small investment of time and resources.

Patrick Schläpfer, Principal Threat Researcherin the HP Wolf Security threat research team, comments:

“Targeting companies with invoice lures is one of the oldest tricks in the book, but it can still be very effective and hence lucrative. Employees working in finance departments are used to receiving invoices via email, so they are more likely to open them. If successful, attackers can quickly monetize their access by selling it to cybercriminal brokers, or by deploying ransomware.”

- Advertisement -
Ad imageAd image

By isolating threats that have evaded detection-based tools – but still allowing malware to detonate safely – HP Wolf Security has specific insight into the latest techniques used by cybercriminals. To date, HP Wolf Security customers have clicked on over 40 billion email attachments, web pages, and downloaded files with no reported breaches.

The report details how cybercriminals continue to diversify attack methods to bypass security policies and detection tools. Other findings include:

  • At least 12% of email threats identified by HP Sure ClickEnterprise*bypassed one or more email gateway scanners.
  • The top threat vectors in Q1 were email attachments (53%), downloads from browsers (25%) and other infection vectors, such as removable storage – like USB thumb drives – and file shares (22%).
  • This quarter, at least 65% ofdocumentthreats relied on an exploit to execute code, rather than macros.

Dr. Ian Pratt, Global Head of Security for Personal Systems at HP Inc., comments that “Living-off-the-Land techniques expose the fundamental flaws of relying on detection alone. Because attackers are using legitimatetools, it’s difficult to spot threats without throwing up a lot of disruptive false positives. Threat containment provides protection even when detection fails, preventing malware from exfiltrating or destroyinguser dataor credentials, and preventing attacker persistence. This is whyorganizations shouldtake a defence-in-depth approach to security, isolating and containing high-risk activities to reduce their attack surface.”

HP Wolf Security** runs risky tasks in isolated, hardware-enforced disposable virtual machines running on the endpoint to protect users, without impacting their productivity. It also captures detailed traces of attempted infections. HP’s application isolation technology mitigates threats that slip past other security tools and provides unique insights into intrusion techniques and threat actor behavior.

This data was gathered from consenting HP Wolf Security customers from January-March 2024.

HP Inc. (NYSE: HPQ) is a global technology leader and creator of solutions that enable people to bring their ideas to life and connect to the things that matter most. Operating in more than 170 countries, HP delivers a wide range of innovative and sustainable devices, services and subscriptions for personal computing, printing, 3D printing, hybrid work, gaming, and more.

HP Wolf Security is world class endpoint security. HP’s portfolio of hardware-enforced security and endpoint-focused security services are designed to help organizations safeguard PCs, printers, and people from circling cyber predators. HP Wolf Security provides comprehensive endpoint protection and resiliency that starts at the hardware level and extends across software and services.

You Might Also Like

Africa Tech Festival Unveils Strategic Themes For 2025 Event,

How Protected Are Your Printers For The Coming Of Quantum Computing ?

Revolutionising Cloud Access for Nigerian Business with Local Innovation

How Nigerian Schools Can Innovate With AI – Expert

HP Selects Nigeria Cohort for 2025 Digital Equity Accelerator

TAGGED: HP
INadminNG May 21, 2024 May 21, 2024
Share This Article
Facebook Twitter Whatsapp Whatsapp LinkedIn Telegram Email Print
Previous Article The Golden 9’s Rugby League Tourney: Bulls Emerge As Champions As Organisers Hail Teams
Next Article Abioye Advocates Empowering Nigerian Youth Tech Talent For Future Of Football Analysis
about us

Independent News Express (iNews Express), a publication of 4Ds Nigeria Limited, is birthed out of the desires of the founding fathers to report News as it is.

We value Professionalism, Excellence, Service, Creativity and Integrity.

The Company

  • Home
  • About Us
  • Contact Us
  • Privacy & Policy

Quick Links

  • Advertise with us
  • Newsletters
  • Deal

Categories

Find Us on Socials

© Independent News Express. All Rights Reserved.
Welcome Back!

Sign in to your account

Lost your password?