Privileges and Credentials: Phished at the Request of Counsel
ID: 7643181b-be2f-4622-9c7c-ea5120b853f5
STIX ID: report--7643181b-be2f-4622-9c7c-ea5120b853f5
Threat Score
78/100
Uploaded: 2026-08-21
Published Date: 2017-06-28
Last Modified Date: 2017-06-28
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
FireEye details a multi-stage phishing campaign attributed to APT19 targeting global law and investment firms, using RTF exploits and macro-enabled Excel documents to deploy a Cobalt Strike BEACON, with an application whitelisting bypass and a comprehensive set of indicators, network IOCs, and recommended mitigations for detection and response.
