"the meeting said something on my system was out of date. i installed the missing item as i presumed it was something to do with teams, and this was the RAT." Oh dear.
That's the bit that scares me. I've often found myself installing software in a hurry to join a meeting on some platform that I've not previously used via my current machine. The time pressure means I'm less likely to pay attention to what I'm installing.
The Axios supply chain attack used individually targeted social engineering
11–14 of 14 posts
Re: The Axios supply chain attack used individually targeted social engineering
#12Use the browser sandbox to protect yourself.
Re: The Axios supply chain attack used individually targeted social engineering
#13As a general rule I install none of these web conferencing things on my machine. Either the browser version works fine, as Google Meet, Zoom, Teams and even WebEx all do, or this is not a meeting I need to be on.
Re: The Axios supply chain attack used individually targeted social engineering
#14As a general rule I install none of these web conferencing things on my machine. Either the browser version works fine, as Google Meet, Zoom, Teams and even WebEx all do, or this is not a meeting I need to be on.
But the attack relied on the target using the browser version
The relevant part is:
* they scheduled a meeting with me to connect. the meeting was on ms teams. the meeting had what seemed to be a group of people that were involved.
* the meeting said something on my system was out of date. i installed the missing item as i presumed it was something to do with teams, and this was the RAT.