Financially motivated threat actors misusing App Installer

Credit to Author: Microsoft Threat Intelligence| Date: Thu, 28 Dec 2023 18:00:00 +0000

Since mid-November 2023, Microsoft Threat Intelligence has observed threat actors, including financially motivated actors like Storm-0569, Storm-1113, Sangria Tempest, and Storm-1674, utilizing the ms-appinstaller URI scheme (App Installer) to distribute malware.

The post Financially motivated threat actors misusing App Installer appeared first on Microsoft Security Blog.

Read more