Chainshorts
Security

UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware

UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware

Cybersecurity researchers identified UNC6692, a threat group using social engineering via Microsoft Teams to deploy SNOW malware. The group impersonates IT helpdesk staff, convincing victims to accept chat invitations from malicious accounts. The campaign highlights evolving tactics in social engineering attacks leveraging popular collaboration tools, with ongoing investigations into the threat actor.

Read to earn +1
Share on XShare on Telegram

More in Security

Security

Lido Finance Flags 9% rsETH Exposure as KelpDAO Exploit Fallout Spreads

Lido Finance has flagged a 9% exposure to rsETH following the KelpDAO exploit, which has impacted rsETH markets. On April 23, 2026, Lido paused EarnETH withdrawals to limit risk amid the liquidity crunch. The firm confirmed limited exposure and deployed safeguards as the fallout from the KelpDAO breach continues to spread across DeFi platforms.

CoinCentralApr 23source ↗
Security

UK PM Starmer warns of foreign-backed proxy attacks amid political pressure

UK Prime Minister Keir Starmer has warned of potential foreign-backed proxy attacks targeting political institutions, amid rising concerns over foreign interference and political instability. The warning, issued on April 23, 2026, emphasizes the need for enhanced security measures to counteract these threats, which could complicate legislative efforts and increase instability within the UK’s political landscape.

Crypto BriefingApr 23source ↗
Security

Trigona ransomware attacks use custom exfiltration tool to steal data

Trigona ransomware attacks now employ a custom command-line exfiltration tool to enhance data theft efficiency. The attacks, observed recently, demonstrate an evolution in their tactics, allowing faster and more effective data exfiltration from compromised systems. This development highlights ongoing security challenges in the Web3 space, emphasizing the need for robust defenses against sophisticated ransomware threats.

BleepingComputerApr 23source ↗
All Security