3CX Desktop Attack: Sophos Customer Information

Credit to Author: Editor| Date: Thu, 30 Mar 2023 08:44:21 +0000

Overview Sophos X-Ops is tracking an attack against the 3CX Desktop application, possibly undertaken by a nation-state-related group. The affected software is 3CX – a legitimate software-based PBX phone system available on Windows, Linux, Android, and iOS. The application has been abused by the threat actor to add an installer that communicates with various command-and-control […]

Read more

Rapid Response: The Squirrelwaffle Incident Guide

Credit to Author: Tilly Travers| Date: Tue, 15 Feb 2022 13:00:10 +0000

Squirrelwaffle is a malicious dropper or loader used to deliver other malware onto target systems. This guide shows Security Operations Centers (SOCs) and Incident Response Teams how to detect and respond to the presence of Squirrelwaffle on the network

Read more