Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

An active phishing campaign impersonating the U.S. Social Security Administration has compromised more than 80 U.S. organizations by deploying two remote access tools simultaneously, with watchdog and Safe Mode persistence mechanisms designed to re-establish access if one channel is removed. The attackers gain SYSTEM-level control over Windows endpoints, a profile consistent with ransomware precursor operations. Organizations running SimpleHelp 5.0.1 or ConnectWise ScreenConnect are at elevated risk of sustained compromise, data theft, and ransomware deployment.

Author

Tech Jacks Solutions