Imposter Spider

Details

IMPOSTER SPIDER is the developer of the Fake Browser Updates (FBU) (a.k.a. SocGholish, FAKEUPDATES) malware distribution service that has been active since at least December 2016. The adversary does not deploy final-stage malware but operates as a private initial access broker (IAB) under a Malware-as-a-Service (MaaS) model, providing system access to various customers, including ransomware operat...

Community Identifiers

YEPFJIwuVznaRSd

Objective

  • jFxqrbJuPS2iehv

Motivation

  • udxbW0pm

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.