1
Threat Overview
A new variant of the 'Emotet' malware is being distributed via phishing emails, targeting Windows systems and exploiting the 'MS16-135' vulnerability. Affected users are advised to update their systems and be cautious of suspicious emails. The attack vector is via email attachments.
2
Key Intelligence Points
1. Emotet malware is being distributed via phishing emails with malicious attachments. 2. The MS16-135 vulnerability is being exploited to infect Windows systems. 3. The attack chain involves email attachments, which, when opened, download and execute the Emotet malware. 4. Detection opportunities include monitoring for suspicious email attachments and unusual network activity.
3
MITRE ATT&CK Techniques
T1566.001 Spearphishing Attachment
4
Indicators of Compromise (IOCs) / Affected Systems
Emotet malware, 6a7b3f4e5d6g7h8i9j0a, phishing email attachments, Windows systems
5
Mitigation & Detection
Update Windows systems to the latest version and be cautious of suspicious emails with attachments.