The art of information gathering. [Research Saturday]

CyberWire Daily

20-04-2024 • 31 mins

Greg Lesnewich, senior threat researcher at Proofpoint, sits down to discuss "From Social Engineering to DMARC Abuse: TA427’s Art of Information Gathering." Since 2023, TA427 has directly solicited foreign policy experts for their opinions on nuclear disarmament, US-ROK policies, and sanction topics via benign conversation starting emails.  The research states "While our researchers have consistently observed TA427 rely on social engineering tactics and regularly rotating its email infrastructure, in December 2023 the threat actor began to abuse lax Domain-based Message Authentication, Reporting and Conformance (DMARC) policies to spoof various personas and, in February 2024, began incorporating web beacons for target profiling." The research can be found here: From Social Engineering to DMARC Abuse: TA427’s Art of Information Gathering

You Might Like

The Morning Brief
The Morning Brief
The Economic Times
ANI Podcast with Smita Prakash
ANI Podcast with Smita Prakash
Asian News International (ANI)
ThePrint
ThePrint
ThePrint
3 Things
3 Things
Express Audio
FT News Briefing
FT News Briefing
Financial Times
Top of the Morning
Top of the Morning
Mint - HT Smartcast
Economist Podcasts
Economist Podcasts
The Economist
HT Daily News Wrap
HT Daily News Wrap
Hindustan Times - HT Smartcast
Daybreak
Daybreak
The Ken
The Journal.
The Journal.
The Wall Street Journal & Gimlet
The Daily
The Daily
The New York Times
Global News Podcast
Global News Podcast
BBC World Service
Serial
Serial
Serial Productions & The New York Times
WSJ What’s News
WSJ What’s News
The Wall Street Journal
The Signal Daily
The Signal Daily
The Core Team