By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Independent News ExpressIndependent News Express
  • Home
  • International
    InternationalShow More
    G7 finance leaders seek non-tariff consensus in Canada, may face US pushback
    Ahead G7 Summit, Finance Ministers Seek Non-tariff Consensus In Canada, May Face US Pushback
    3 weeks ago
    Over 28,000 Women And Girls Killed In Gaza Since October 2023
    3 weeks ago
    Global Aid Cut
    New Report Reveals How Global Aid Cuts Affecting Women’s Organisations Aiding Women In Crises
    4 weeks ago
    UNICEF Raises Alarm Over 14m Children Worldwide At Risk Of Malnutrition
    2 months ago
    United Nations for Women
    In 8 Days, 830 Killed In Gaza – UN Women Raises Alarm
    2 months ago
  • Africa
    Africa
    Show More
    Top News
    Africa Leaders Summit: US To Strengthening Partnerships To Meet Shared Priorities
    2 years ago
    President Ruto Rallies Kenyans To Move Nation Forward
    2 years ago
    Tanzania: United Nations Steps Up Efforts To Build Climate Resilience
    2 years ago
    Latest News
    Public Exit: Why South Africa Businesses Are Moving To Private Cloud
    6 days ago
    Cameroon Tops List Of World’s Most Neglected Displacement Crises
    1 week ago
    ECOWAS Marathon Race Director Okon Congratulates Commission on 50th Anniversary
    2 weeks ago
    Africa Day: Majority of Africans Want African Nations Be Given Greater Influence In International Decision-making Bodies
    2 weeks ago
  • Corporate News
    • Media Outreach
  • Politics
    Politics
    Show More
    Top News
    Nobody Can Hijack Our Mandate, Vows Osun Gov, Adeleke
    2 years ago
    PDP To Osun People: Oyetola Is A ‘Political Leprosy’, Run For Cover
    2 years ago
    UI Alumni Association Hails Okowa’s Giant Strides In Delta State
    2 years ago
    Latest News
    Lagos Lawmaker Praises Tinubu For Helping Nigeria Breathe Again
    2 days ago
    LG Election: Stakeholders Appeal To APC Not To Allow Chairmen Run For 3rd term
    1 month ago
    More APC Chairmanship Aspirants Reject Indirect Primary For Local Govt Elections In Lagos State
    1 month ago
    Youth Party Sets May 18 for Lagos LG Primary Elections, Slashes Fees For Women and PWDs
    2 months ago
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
    News
    Show More
    Top News
    Ondo Governor, Akeredolu Begins Construction Of First Flyover In Akure
    2 years ago
    Celebration Of Life: Reverend Adewumi Jegede Of Later House Of God Assembly Buried Amid Pomp
    12 months ago
    Pa Abdulfatah Amoo Ayanwale
    Pa Ayanwale Dies At 76, Fidau Prayers Holds 8 August
    2 years ago
    Latest News
    IMSUAA 2025 Convention Theme Unveiled As La-Ghost Speaks On Prospects of Heartland 2025
    5 days ago
    Former EFCC Boss, Bawa Unveils Explosive Book On Nigeria’s Fuel Subsidy Fraud
    7 days ago
    IMSUAA 2025: La-Ghost And Starblaze Could Draw Inspiration From Convention Theme
    1 week ago
    IMSUAA 2025 Convention: Two Artistes From Lagos Chapter To Light Up Event
    2 weeks ago
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
    Entertainment
    Show More
    Top News
    Nigeria’s Glo(W)Ing Entertainment Industry: 19 Years Of Strategic Partnership
    3 years ago
    2023 Polls: Stay Tuned To These Channels On GOtv For Breaking News And Analysis 
    2 years ago
    Family, Friends Celebrate As Princess Zara Raji Turns Two
    2 years ago
    Latest News
    Jkenova and Ellacentric Exit Nigerian Idol Season 10 In Emotional Farewell
    16 hours ago
    MultiChoice Africa x African Storytelling: How Local Content Shapes Local Culture
    6 days ago
    Nigerian Idol Season 10 Live Shows Are Underway as the Top 10 Battle for Stardom
    2 weeks ago
    Nigeria Strengthens Fight Against Content Piracy Through Strategic Partnerships
    3 weeks ago
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
    Lifestyle
    Show More
    Top News
    Ilara-Epe Kingdom To Confer Chieftaincy Title On Trinidad and Tobago Envoy
    2 years ago
    Bishop Emmanuel Tasks Christians Worldwide On Dedication To God’s Service, As Blood Of Jesus Ministry Holds Ordination For Church Officers
    2 years ago
    Carnival Of Peace: Preparation Begins For The Mainland White Carnival In Lagos
    6 months ago
    Latest News
    Lagos SWAN Joins UN To Celebrate World Nutrition Month At Unilag Confab
    2 weeks ago
    Yemisi Shyllon Museum of Art and Toledo Museum of Art Launch Historic Cultural Exchange
    1 month ago
    Piracy in Africa’s Creative Sector: How Creators Can Protect Their Content
    2 months ago
    Fanti Carnival Returns To Lagos This Easter Sunday
    2 months ago
  • Business
    • Banking & Finance
    • Oil & Gas
    BusinessShow More
    Lagos Will Continue To Lead Initiatives That Accelerate Economic Diversification – Sanwo-Olu
    3 weeks ago
    Afreximbank
    Afreximbank Reports Strong Performance For Q1 2025 In Line With expectations
    3 weeks ago
    Pan-African Payment & Settlement System
    Nigeria Unlocks Intra-African Trade With New Pan-African Payment & Settlement System Policy Boost
    1 month ago
    Impact Of Online Trading Platforms Like Temu On Nigeria’s Economy
    1 month ago
    Unity Bank Launches GenFi, Targets Children, Teens With Gamified Banking Platform
    1 month ago
  • Health
    Health
    Show More
    Top News
    South Africa’s Cannabis Growers In Pondoland Left Behind By Legalisation Plans
    3 years ago
    WHO Expands Health Services Support For Vulnerable Populations In Nigeria’s Northeast
    2 years ago
    trachoma
    WHO Commends Benin, Mali For Eliminating Trachoma As Public Health Problem
    2 years ago
    Latest News
    Apepa or Arterial Blockage? The Urgency of Self-Care After 45 By Babafemi Ojudu
    6 days ago
    Roche Launches Diagnostics Operations In Nigeria,
    1 week ago
    Alimosho Football Coaches Council Set For Health, Safety Business Workshop
    3 weeks ago
    World Hypertension Day: Merck Foundation Commits To Improving Cardiovascular And Diabetes Care Across Africa
    4 weeks ago
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Reading: HP Catches Cybercriminals ‘Cat-Phishing’ Users
Share
Notification Show More
Aa
Independent News ExpressIndependent News Express
Aa
  • Home
  • International
  • Africa
  • Corporate News
  • Politics
  • News
  • Entertainment
  • Lifestyle
  • Business
  • Health
  • More
Search
  • Home
  • International
  • Africa
  • Corporate News
    • Media Outreach
  • Politics
  • News
    • Agriculture
    • Breaking News
    • Tech
    • Maritime
    • Crime
    • Art & Culture
  • Entertainment
    • Comedy
    • Movies
    • Music
    • Television
    • Concert & Events
  • Lifestyle
    • Fashion
    • Love & Life
    • Food & Drink
    • Travel & Tourism
    • Relationship
    • Sex
  • Business
    • Banking & Finance
    • Oil & Gas
  • Health
  • More
    • Sports
    • Aviation/Transportation
    • Deliverance Hour
    • Industry & Labour
    • Insurance
    • Interview
    • Judiciary
    • Metro
    • Opinion
    • Property
    • Religious
    • Romance
    • Science & Discovery
Have an existing account? Sign In
Follow US
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Independent News Express > Blog > Tech > HP Catches Cybercriminals ‘Cat-Phishing’ Users
Tech

HP Catches Cybercriminals ‘Cat-Phishing’ Users

Last updated: 2024/05/21 at 6:18 AM
1 year ago
Share
SHARE

HP Inc has issued its quarterly HP Wolf Security Threat Insights Report, showing attackers are relying on open redirects, overdue invoice lures,and Living-off-the-Land (LotL) techniques to sneak past defences.The report provides an analysis of real-world cyberattacks, helping organizations to keep up with the latest techniques cybercriminals use to evade detection and breach PCsin the fast-changing cybercrime landscape.

Based on data from millions of endpoints running HP Wolf Security, notable campaigns identified by HP threat researchers include:

  • Attackers using open redirects to ‘Cat-Phish’ users:In an advanced WikiLoader campaign, attackers exploited open redirect vulnerabilities within websites to circumvent detection. Users were directed to trustworthy sites, often through open redirect vulnerabilities in ad embeddings. They were then redirected to malicious sites – making it almost impossible for users to detect the switch.
  • Living-off-the-BITS:Several campaigns abused the Windows Background Intelligent Transfer Service (BITS) – a legitimate mechanism used by programmers and system administratorsto download or upload files to web servers and file shares. This LotLtechnique helped attackers remain undetected by using BITSto download the malicious files.
  • Fake invoices leading to HTML smuggling attacks:HP identified threat actorshiding malware inside HTML files posing as delivery invoices which,once opened in a web browser, unleash a chain of events deploying open-source malware, AsyncRAT. Interestingly, the attackers paid little attention to the design of the lure, suggesting theattackwas created with only a small investment of time and resources.

Patrick Schläpfer, Principal Threat Researcherin the HP Wolf Security threat research team, comments:

“Targeting companies with invoice lures is one of the oldest tricks in the book, but it can still be very effective and hence lucrative. Employees working in finance departments are used to receiving invoices via email, so they are more likely to open them. If successful, attackers can quickly monetize their access by selling it to cybercriminal brokers, or by deploying ransomware.”

- Advertisement -
Ad imageAd image

By isolating threats that have evaded detection-based tools – but still allowing malware to detonate safely – HP Wolf Security has specific insight into the latest techniques used by cybercriminals. To date, HP Wolf Security customers have clicked on over 40 billion email attachments, web pages, and downloaded files with no reported breaches.

The report details how cybercriminals continue to diversify attack methods to bypass security policies and detection tools. Other findings include:

  • At least 12% of email threats identified by HP Sure ClickEnterprise*bypassed one or more email gateway scanners.
  • The top threat vectors in Q1 were email attachments (53%), downloads from browsers (25%) and other infection vectors, such as removable storage – like USB thumb drives – and file shares (22%).
  • This quarter, at least 65% ofdocumentthreats relied on an exploit to execute code, rather than macros.

Dr. Ian Pratt, Global Head of Security for Personal Systems at HP Inc., comments that “Living-off-the-Land techniques expose the fundamental flaws of relying on detection alone. Because attackers are using legitimatetools, it’s difficult to spot threats without throwing up a lot of disruptive false positives. Threat containment provides protection even when detection fails, preventing malware from exfiltrating or destroyinguser dataor credentials, and preventing attacker persistence. This is whyorganizations shouldtake a defence-in-depth approach to security, isolating and containing high-risk activities to reduce their attack surface.”

HP Wolf Security** runs risky tasks in isolated, hardware-enforced disposable virtual machines running on the endpoint to protect users, without impacting their productivity. It also captures detailed traces of attempted infections. HP’s application isolation technology mitigates threats that slip past other security tools and provides unique insights into intrusion techniques and threat actor behavior.

This data was gathered from consenting HP Wolf Security customers from January-March 2024.

HP Inc. (NYSE: HPQ) is a global technology leader and creator of solutions that enable people to bring their ideas to life and connect to the things that matter most. Operating in more than 170 countries, HP delivers a wide range of innovative and sustainable devices, services and subscriptions for personal computing, printing, 3D printing, hybrid work, gaming, and more.

HP Wolf Security is world class endpoint security. HP’s portfolio of hardware-enforced security and endpoint-focused security services are designed to help organizations safeguard PCs, printers, and people from circling cyber predators. HP Wolf Security provides comprehensive endpoint protection and resiliency that starts at the hardware level and extends across software and services.

You Might Also Like

How Protected Are Your Printers For The Coming Of Quantum Computing ?

Revolutionising Cloud Access for Nigerian Business with Local Innovation

How Nigerian Schools Can Innovate With AI – Expert

HP Selects Nigeria Cohort for 2025 Digital Equity Accelerator

The Future of Work: The Evolving Workforce Experience

TAGGED: HP
INadminNG May 21, 2024 May 21, 2024
Share This Article
Facebook Twitter Whatsapp Whatsapp LinkedIn Telegram Email Print
Previous Article The Golden 9’s Rugby League Tourney: Bulls Emerge As Champions As Organisers Hail Teams
Next Article Abioye Advocates Empowering Nigerian Youth Tech Talent For Future Of Football Analysis
about us

Independent News Express (iNews Express), a publication of 4Ds Nigeria Limited, is birthed out of the desires of the founding fathers to report News as it is.

We value Professionalism, Excellence, Service, Creativity and Integrity.

The Company

  • Home
  • About Us
  • Contact Us
  • Privacy & Policy

Quick Links

  • Advertise with us
  • Newsletters
  • Deal

Categories

Find Us on Socials

© Independent News Express. All Rights Reserved.
Welcome Back!

Sign in to your account

Lost your password?