Continued increase in cyberattacks
Many modern malware tools already incorporate features for evading antivirus or other threat detection measures, but cyber adversaries are becoming more sophisticated in their obfuscation and anti-analysis practices to avoid detection.
For example, a spam campaign demonstrates how adversaries are using and tweaking these techniques against defenders. The campaign involves the use of a phishing email with an attachment that turned out to be a weaponized Excel document with a malicious macro. The macro has attributes designed to disable security tools, execute commands arbitrarily, cause memory problems, and ensure that it only runs on Japanese systems. One property that it looks for in particular, an xlDate variable, seems to be undocumented.
![]() |
Another example involves a variant of the Dridex banking trojan which changes the names and hashes of files each time the victim logs in, making it difficult to spot the malware on infected host systems.
The growing use of anti-analysis and broader evasion tactics is a reminder of the need for multi-layered defenses and behavior-based threat detection.
The Zegost infostealer malware, is the cornerstone of a spear phishing campaign and contains intriguing techniques. Like other infostealers, the main objective of Zegost is to gather information about the victim’s device and exfiltrate it. Yet, when compared to other infostealers, Zegost is uniquely configured to stay under the radar. For example, Zegost includes functionality designed to clear the application, security, and system event logs. This type of cleanup is not seen in typical malware. Another interesting development in Zegost’s evasion capabilities is a command that kept the infostealer “in stasis” until after February 14, 2019, after which it began its infection routine.
The threat actors behind Zegost utilize an arsenal of exploits to ensure they establish and maintain a connection to targeted victims, making it far more of a long term threat compared to its contemporaries.
The attacks on multiple cities, local governments, and education systems serve as a reminder that ransomware is not going away, but instead continues to pose a serious threat for many organizations going forward. Ransomware attacks continue to move away from mass-volume, opportunistic attacks to more targeted attacks on organizations, which are perceived as having either the ability or the incentive to pay ransoms. In some instances, cybercriminals have conducted considerable reconnaissance before deploying their ransomware on carefully selected systems to maximize opportunity.
For example, RobbinHood ransomware is designed to attack an organization's network infrastructure and is capable of disabling Windows services that prevent data encryption and to disconnect from shared drives.
![]() |
Another newer ransomware called Sodinokibi, could become another threat for organizations. Functionally, it is not very different from a majority of ransomware tools in the wild. It is troublesome because of the attack vector, which exploits a newer vulnerability that allows for arbitrary code execution and does not need any user interaction like other ransomware being delivered by phishing email.
Regardless of the vector, ransomware continues to pose a serious threat for organizations going forward, serving as a reminder of the importance of prioritizing patching and infosecurity awareness education. In addition, Remote Desktop Protocol (RDP) vulnerabilities, such as BlueKeep are a warning that remote access services can be opportunities for cybercriminals and that they can also used as an attack vector to spread ransomware.
Between the home printer and critical infrastructure is a growing line of control systems for residential and small business use. These smart systems garner comparably less attention from attackers than their industrial counterparts, but that may be changing based on increased activity observed targeting these control devices such as environmental controls, security cameras, and safety systems. A signature related to building management solutions was found to be triggered in 1% of organizations, which may not seem like much, but it is higher than typically seen for ICS or SCADA products.
Cybercriminals are searching for new opportunities to commandeer control devices in homes and businesses. Sometimes these types of devices are not as prioritized as others or are outside the scope of traditional IT management. The security of smart residential and small business systems deserves elevated attention especially since access could have serious safety ramifications. This is especially relevant for remote work environments where secure access is important.
Threat intelligence that is dynamic, proactive, and available in real-time can help identify trends showing the evolution of attack methods targeting the digital attack surface and to pinpoint cyber hygiene priorities. The value and ability to take action on threat intelligence is severely diminished if it cannot be actionable in real-time across each security device. Only a security fabric that is broad, integrated, and automated can provide protection for the entire networked environment, from IoT to the edge, network core and to multi-clouds at speed and scale.
Phil Quade, Chief Information Security Officer, Fortinet “The ever-widening breadth and sophistication of cyber adversaries’ attack methods is an important reminder of how they are attempting to leverage speed and connectivity to their advantage. Therefore, it is important for defenders to do the same and to relentlessly prioritize these important cybersecurity fundamentals, to position organizations to better manage and mitigate cyber risks. A security fabric approach across every security element that embraces segmentation and integration, actionable threat intelligence, and automation combined with machine learning is essential to enable these fundamentals to bear fruit.”
The latest Fortinet Threat Landscape Report is a quarterly view that represents the collective intelligence of FortiGuard Labs, drawn from Fortinet’s vast array of global sensors during Q2 2019. Research data covers global and regional perspectives. Also included in the report is the Fortinet Threat Landscape Index (TLI), comprised of individual indices for three central and complementary aspects of that landscape which are exploits, malware, and botnets, showing prevalence and volume in a given quarter. |
See also

Ransomware top menace for enterprises in SEA
15:00 | 14/03/2023 Information technology

PM urges basic, comprehensive reform in digital transformation
06:00 | 06/03/2023 Digitalization

Vietnam’s AI leadership status improving
06:00 | 04/03/2023 Information technology

Managed security provides IT talent gap solution for businesses in SEA
16:34 | 30/01/2023 Information technology

Top 10 ICT developments in 2022
06:00 | 11/01/2023 Information technology

Cybersecurity resilience emerges as top priority for Vietnamese organizations
15:39 | 05/01/2023 Information technology
See more news

FortiGuard Labs predicts the convergence of advanced persistent threat methods with cybercrime
10:20 | 25/11/2022 Information technology

ETH Vietnam: The first hub for blockchain community to build and learn together
16:23 | 17/11/2022 Information technology

Sconnect Media to protect rights of “Wolfoo” in the US
15:10 | 10/11/2022 Information technology

FPT Software and Julie Sandlau to revolutionize jewelry production
15:03 | 02/11/2022 Information technology

Wolfoo product sets certificated as standard content
16:15 | 01/11/2022 Make in Vietnam

Base.vn received the International Award ASOCIO 2022
18:05 | 31/10/2022 Make in Vietnam

Sconnect Vietnam launches TUBRR brand
18:15 | 28/10/2022 Information technology

Bkav, Excelpoint provide AIoT platform built on Qualcomm ecosystem
10:01 | 21/10/2022 Make in Vietnam

Phishing attacks in H1 2022 exceed SEA’s total number last year
11:30 | 13/10/2022 Information technology

APAC accounts for a quarter of global malicious emails in 2022
15:39 | 13/09/2022 Information technology

Asian investors increasingly keen on Vietnam
13:00 | 26/03/2023 FDI

Bac Kan produce takes off
10:00 | 26/03/2023 Industry promotion

Stock market violations to face stricter sanctions
07:10 | 26/03/2023 Stock Market

Let’s go fly a kite
06:00 | 26/03/2023 Lifestyle

Vietnamese noodles clear EU safety hurdle
15:09 | 25/03/2023 Foreign trade
Multimedia

Ha Long Bay, Cu Chi Tunnels among ten adventurous tourism places in Southeast Asia
07:00 | 25/03/2023 Infographic

Vietnam-Italy trade partnership
13:00 | 23/03/2023 Infographic

Renowned Vietnamese artists collaborate on unique porcelain artworks
06:00 | 23/03/2023 Lifestyle

Vietnamese culture and silk are topics of event dedicated to women
06:00 | 25/03/2023 Lifestyle

The first Vietnamese bread festival
06:00 | 25/03/2023 Entertainment

New legal documents in first half of March 2023
06:00 | 23/03/2023 Policy

Animal feed industry asks for import tax reduction on raw materials
09:55 | 20/03/2023 Policy

Over 250 petitions submitted to authorities on fragility of petroleum regulations
18:07 | 16/03/2023 Policy

New legal documents in second half of February 2023
07:00 | 12/03/2023 Policy

Bac Kan produce takes off
10:00 | 26/03/2023 Industry promotion

Bac Giang develops rural industrial exports
07:00 | 25/03/2023 Industry promotion

Ocean dialogue dicusses offshore renewable energy potential
09:53 | 24/03/2023 Energy

Vietnam Manufacturing Expo & NEPCON Vietnam exhibition 2023 kick off
16:41 | 22/03/2023 Support industries

Asian investors increasingly keen on Vietnam
13:00 | 26/03/2023 FDI

India introduces pharmaceutical industry' opportunities to potential Vietnamese investors
19:54 | 23/03/2023 Vietnam and other regions

Vietnam attracts Czech investors
06:00 | 23/03/2023 FDI

US businesses exploring investment, business opportunities in Vietnam
10:01 | 21/03/2023 FDI

Stock market violations to face stricter sanctions
07:10 | 26/03/2023 Stock Market

Vietnam to develop policies to adapt to global minimum tax
07:05 | 23/03/2023 Finance-Banking

Vietnam seeks response to corporate tax overhaul
06:00 | 20/03/2023 Finance-Banking

Vietnam’s regulatory interest rates to be reduced by 0.5-1 percent
07:05 | 16/03/2023 Finance-Banking

The value of wood scraps for business
13:00 | 25/03/2023 Environment

New river trash capture tool launched in Nam Dinh Province
15:00 | 23/03/2023 Environment

Việt Nam carries out measures for healthy forests
10:30 | 22/03/2023 Environment

COP28 President-Designate to co-chair Copenhagen climate ministerial meeting
09:46 | 22/03/2023 Environment

Vietnam, Thailand beef up sci-tech, educational collaboration
06:00 | 25/03/2023 Science - Technology

Science, technology, innovation promoted to support national development
06:00 | 22/03/2023 Science - Technology

Vietnam introduces automated sorting system
13:00 | 20/03/2023 Make in Vietnam

Domestic ICT firms well-positioned to reach out to the world
06:00 | 20/03/2023 Science - Technology

Agriculture sector to use AI to maximise production
10:42 | 24/03/2023 Society

Việt Nam strives to eliminate malaria once and for all
09:16 | 23/03/2023 Society

Transport infrastructure fund needed to enhance Southeast regional linkages
09:52 | 21/03/2023 Society

Hà Nội to build new bridge crossing Red River
07:00 | 19/03/2023 Metropolis

Vietnam adopts high integration standards
06:00 | 25/03/2023 Companies

Bac Giang promotes consumption of OCOP products associated with tourism
10:02 | 24/03/2023 Vietnamese Brands

Bamboo Airways to launch Viet Nam’s longest domestic air route from April
14:53 | 22/03/2023 Vietnamese Brands

King Coffee and Tín Thành Group partner to build a tyre plant in the US
10:20 | 20/03/2023 Vietnamese Brands

Let’s go fly a kite
06:00 | 26/03/2023 Lifestyle

Vietnamese culture and silk are topics of event dedicated to women
06:00 | 25/03/2023 Lifestyle

Renowned Vietnamese artists collaborate on unique porcelain artworks
06:00 | 23/03/2023 Lifestyle

Việt Nam's grilled bananas among world’s most delicious desserts
06:00 | 20/03/2023 Lifestyle

Ha Long Bay, Cu Chi Tunnels among ten adventurous tourism places in Southeast Asia
07:00 | 25/03/2023 Infographic

Small stools, big charm balancing Hà Nội's iconic appeal with pedestrian safety
06:00 | 25/03/2023 Tourism

Japanese man gives his love to Hà Giang
06:00 | 23/03/2023 Tourism

Visa exemption means int'l tourists can visit Phu Quoc for up to 30 days
16:32 | 22/03/2023 Tourism