사이드카피가 인도의 학계를 대상으로 스피어 피싱 공격을 확대하고 있다.
사이드카피라는 위협 행위자가 인도의 학술 기관을 목표로 스피어 피싱 공격을 강화하고 있다. 이들은 mshta.exe를 악용하여 악성 스크립트를 실행하고 기존 보안 프로토콜을 우회하는 전술을 사용하고 있다. 이러한 캠페인은 정부 기관을 넘어 학계로 전략이 확대되고 있는 모습이다.
SideCopy is expanding its spear-phishing attacks to target academic institutions in India.
The threat actor known as SideCopy is broadening its focus to include academic institutions in India with spear-phishing attacks. They typically exploit mshta.exe to execute malicious scripts and bypass standard security protocols. This marks a shift in their strategy from primarily targeting government entities.