As cited
Copy frozen at (site build).
threat intel
Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks
Securonix researchers identified a sophisticated attack framework called Veil#Drop that leverages compromised websites and Blogspot to host and deliver payloads while using PowerShell and fileless techniques to avoid detection. The attacks ultimately deploy PureLog, an information stealer designed to exfiltrate sensitive data.
Why it matters: Organizations need to monitor for unusual Blogspot traffic and PowerShell execution, as this attack pattern allows adversaries to bypass traditional defenses and steal credentials or sensitive information from compromised systems.
- Source published
- First seen by Cybersecurity Tracker