Threat Intelligence, Supply chain![Red Skull Icon Formed From Binary Code on Computer Screen](https://image-optimizer.cyberriskalliance.com/unsafe/1920x0/https://files.cyberriskalliance.com/wp-content/uploads/2024/12/123124_ai_threat.jpg)
More sophisticated XE Group attacks pose greater supply chain threat
![Red Skull Icon Formed From Binary Code on Computer Screen](https://image-optimizer.cyberriskalliance.com/unsafe/1920x0/https://files.cyberriskalliance.com/wp-content/uploads/2024/12/123124_ai_threat.jpg)
(Adobe Stock)
Threat operation XE Group, which mainly focused on credit card skimming intrusions upon its emergence in 2013, has become a more formidable supply chain threat with its transition to more advanced zero-day attacks last year, reports CyberScoop. Aside from exploiting a pair of zero-day flaws in the VeraCore supply chain management software to facilitate systems and configuration files compromise and persistence, XE Group also moved to revive a webshell initially installed four years prior, according to a joint analysis by Intezer and Solis Security. Other recent activity by XE Group involved the utilization of stolen database credentials for malicious file uploads, as well as the enhancement of its attack arsenal to include PowerShell-based payload distribution and automated data theft tools. "These recent discoveries highlight that XE Group is not only active but evolving. The group's ability to exploit unknown vulnerabilities and sustain prolonged access to targeted systems reflects a significant shift in their operational strategy," said the report.
Related Events
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news
You can skip this ad in 5 seconds