Blind Eagle’s Banking Trap: Phishing Colombia’s Financial Sector

Amber | Attack Report
Download PDF

A cybercriminal group known as Blind Eagle has been running a crafty phishing campaign across Latin America, targeting users with fake emails that appear to come from trusted banks. These messages trick people into downloading malicious scripts hidden inside innocent-looking files. Once opened, the malware acts as a doorway, giving attackers control over the victim’s computer through remote access tools like Remcos or AsyncRAT. What’s striking is how open and sloppy the infrastructure is, the attackers’ reused domains, left directories exposed, and used basic obfuscation, proving that even low-effort setups can lead to serious breaches when phishing is done right.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox

Cyber Horizons 2025

What Last Year’s Attacks Reveal About Today’s Risks

Watch the Webinar on-demand and get a FREE copy of our Cyber Horizons 2025 report.

Our Speakers
Speaker 1

Prateek Bhajanka Global Field CISO & Former Gartner Analyst Hive Pro Inc.

Speaker 2

Ankit Mani Manager Threat Intel HiveForce Labs

Speaker 3

Sreevani Tonipe Senior Threat Researcher HiveForce Labs