logo

Privileges and Credentials: Phished at the Request of Counsel

ID: 7643181b-be2f-4622-9c7c-ea5120b853f5

STIX ID: report--7643181b-be2f-4622-9c7c-ea5120b853f5

Threat Score

78/100

Uploaded: 2026-08-21

Published Date: 2017-06-28

Last Modified Date: 2017-06-28

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
FireEye details a multi-stage phishing campaign attributed to APT19 targeting global law and investment firms, using RTF exploits and macro-enabled Excel documents to deploy a Cobalt Strike BEACON, with an application whitelisting bypass and a comprehensive set of indicators, network IOCs, and recommended mitigations for detection and response.