Car Sale Scam: APT28 Delivers Malware Instead of the Vehicle

Amber | Attack Report
Download PDF

The Russian threat actor APT28, also known as, Fancy Bear, has been identified in a campaign targeting diplomats using fake car sale advertisements to distribute the HeadLace backdoor malware. This campaign leverages legitimate services like Webhook.site to host malicious URLs, complicating detection and mitigation efforts.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox