TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Proofpoint Threat Insight

Cargo thieving hackers running sophisticated remote access campaigns, researchers find

2026-04-16 · Read original ↗

ATT&CK techniques detected

3 predictions
T1059.001PowerShell
70%
"he said. “ not only was the msi [ microsoft installer ] signed, but it would also go out and replace all the component files and re - sign them as well. the whole thing was thought out pretty well. ” another thing that jumped out to villadsen was the way in which the hackers seem…"
T1657Financial Theft
55%
"cargo thieving hackers running sophisticated remote access campaigns, researchers find cargo thieving hackers running sophisticated remote access campaigns, researchers find security researchers recently spent a month getting a first - hand look at the activity of cybercriminals …"
T1219Remote Access Tools
53%
"compromised a load board platform, a marketplace where freight brokers and shippers connect to arrange the movement of cargo. after getting access, the cybercriminals installed six separate remote access tools, including four screenconnect instances, which researchers believe was…"