UNC3944 Uses Azure Serial Console for Stealthy Access to Virtual Machines

Researchers revealed that the UNC3944 threat actors use phishing and SIM-swapping attacks to get control over Microsoft Azure admin accounts. Hackers maliciously used the Azure Serial Console on Azure Virtual Machines (VM) to deploy remote management software within client environments.

Read full article on Heimdal Security Blog

 


Date:

Categorie(s):