Archive for 'February 2013'
Threat Actors Using Mandiant APT1 Report as a Spear Phishing Lure: The Nitty Gritty
As we noted <a href="https://www.mandiant.com/blog/threat-actors-mandiant-apt1-report-spear-phishing-lure/">yesterday</a>, Brandon Dixon's 9B+ blog and Symantec reported the discovery of two malicious versions of our APT1 report. We wanted to provide follow-on details based on our analysis of these samples. Additionally, we have attached Indicators of Compromise (IOCs) so folks can begin using them to detect the malware.