<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>apt33 &#8211; EFR Technology Group</title>
	<atom:link href="https://www.efrtechgroup.com/category/apt33/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.efrtechgroup.com</link>
	<description>We maintain technology so you don't have to!</description>
	<lastBuildDate>Wed, 03 Jul 2019 00:21:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.efrtechgroup.com/wp-content/uploads/2019/02/cropped-EFRTG-color-2-32x32.jpg</url>
	<title>apt33 &#8211; EFR Technology Group</title>
	<link>https://www.efrtechgroup.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>US Cyber Command warns of nation-state hackers exploiting Outlook</title>
		<link>https://www.efrtechgroup.com/tech/us-cyber-command-warns-of-nation-state-hackers-exploiting-outlook/</link>
		
		<dc:creator><![CDATA[Randall]]></dc:creator>
		<pubDate>Wed, 03 Jul 2019 00:21:00 +0000</pubDate>
				<category><![CDATA[apt33]]></category>
		<category><![CDATA[cyber command]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[gear]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[iran]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[outlook]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[shamoon]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[vulnerability]]></category>
		<guid isPermaLink="false">https://www.efrtechgroup.com/us-cyber-command-warns-of-nation-state-hackers-exploiting-outlook/</guid>

					<description><![CDATA[[ad_1] ZDNet noted that a known Iran-backed hacking team, APT33, had used the same vulnerability in December to install back doors on servers and promptly push the flaw to Outlook users. Chronicle Security&#8217;s Brandon Levene also found that Cyber Command&#8217;s code samples appeared related to APT33&#8217;s disk-wiping Shamoon malware. Symantec had also warned of increased [&#8230;]]]></description>
										<content:encoded><![CDATA[<p> [ad_1]<br />
</p>
<div>
<p><em>ZDNet</em> <a href="https://www.zdnet.com/article/us-cyber-command-issues-alert-about-hackers-exploiting-outlook-vulnerability/">noted</a> that a known Iran-backed hacking team, APT33, had used the same vulnerability in December to install back doors on servers and promptly push the flaw to Outlook users.  Chronicle Security&#8217;s Brandon Levene also found that Cyber Command&#8217;s code samples appeared related to APT33&#8217;s disk-wiping Shamoon malware.  Symantec had also warned of increased activity from the group in  recent months.</p>
<p>If it&#8217;s Iran and not a more familiar perpetrator like Russia, it suggests that political tensions are translating directly to the digital realm.  The US is believed to have <a href="https://www.engadget.com/2019/06/22/us-cyberattack-reportedly-knocked-out-iran-missile-control-syste/">knocked out Iranian missile and rocket systems</a> with a cyberattack in late June, for instance.  Although this Outlook campaign isn&#8217;t necessarily direct retaliation for the missile effort, it&#8217;s hard to imagine Iran doing nothing in response.</p>
<div align="center">
<blockquote class="twitter-tweet" data-lang="en">
<p dir="ltr" lang="en">USCYBERCOM has discovered active malicious use of CVE-2017-11774 and recommends immediate <a href="https://twitter.com/hashtag/patching?src=hash&amp;ref_src=twsrc%5Etfw">#patching</a>. Malware is currently delivered from: &#8216;hxxps://customermgmt.net/page/macrocosm&#8217; <a href="https://twitter.com/hashtag/cybersecurity?src=hash&amp;ref_src=twsrc%5Etfw">#cybersecurity</a> <a href="https://twitter.com/hashtag/infosec?src=hash&amp;ref_src=twsrc%5Etfw">#infosec</a></p>
<p>— USCYBERCOM Malware Alert (@CNMF_VirusAlert) <a href="https://twitter.com/CNMF_VirusAlert/status/1146130046127681536?ref_src=twsrc%5Etfw">July 2, 2019</a></p></blockquote>
</div></div>
<p><script async src="http://platform.twitter.com/widgets.js" charset="utf-8"></script><br />
<br />[ad_2]<br />
<br /><a href="https://www.engadget.com/2019/07/02/cyber-command-outlook-exploit-warning/">Source link </a></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
