Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Any.Run Phishing Incident Exposed

June 25, 2024
Reading Time: 2 mins read
in Incidents
Any.Run Phishing Incident Exposed

Any.Run, a malware analysis service, disclosed details about a recent phishing attack targeting its employees. The incident unfolded on June 18 when all staff members received a phishing email purportedly sent by another Any.Run employee. Although the attacker’s access was swiftly terminated, an investigation revealed they had been present for several weeks undetected.

The attack originated on May 23, 2024, when an employee in Any.Run’s sales team clicked on a link in an email from a purported client, which led to a compromised Microsoft phishing website. The employee unwittingly entered their login credentials and multi-factor authentication (MFA) code, granting the attacker access to their account.

Subsequently, the hacker added their mobile device for continued access and installed an application to pilfer data from the victim’s email account. They maintained access until June 18, sending out phishing emails to contacts in the compromised employee’s address book. Fortunately, the malicious link had already been identified by Any.Run’s threat intelligence database, stemming from sandbox analysis sessions conducted by free users of the service.

Upon discovery, Any.Run promptly revoked the attacker’s access, enhanced security measures, and shared indicators of compromise (IoCs) to bolster detection efforts against similar threats. The incident is believed to be part of a broader business email compromise (BEC) campaign, underlining the ongoing vigilance needed to thwart sophisticated phishing attacks in cybersecurity.

Reference:
  • Any.Run Phishing Incident Exposes Employee Accounts
Tags: ANY.RUNCredentialscyber incidentsCyber Incidents 2024Cyber threatsJune 2024MalwareMFAMicrosoftmulti-factor authenticationPhishing
ADVERTISEMENT

Related Posts

Linux Core Dump Flaws Risk Password Leaks

Covenant Health Cyberattack Shuts Hospitals

June 2, 2025
Linux Core Dump Flaws Risk Password Leaks

Moscow DDoS Attack Cuts Internet For Days

June 2, 2025
Linux Core Dump Flaws Risk Password Leaks

Puerto Rico’s Justice Department Cyberattack

June 2, 2025
Amalgamated Sugar Data Breach Exposes SSNs

State Actors Hit ConnectWise ScreenConnect

May 30, 2025
Amalgamated Sugar Data Breach Exposes SSNs

Ivanti Flaw Hits NHS Staff and Patient Data

May 30, 2025
Amalgamated Sugar Data Breach Exposes SSNs

Amalgamated Sugar Data Breach Exposes SSNs

May 30, 2025

Latest Alerts

Linux Core Dump Flaws Risk Password Leaks

GitHub Code Flaw Replicated By AI Models

Google Script Used In New Phishing Scams

EDDIESTEALER Uses Fake CAPTCHAs for Stealing

Fake AI Apps Drop Ransomware And Malware

OneDrive Flaw Gives Sites Full Data Access

Subscribe to our newsletter

    Latest Incidents

    Covenant Health Cyberattack Shuts Hospitals

    Moscow DDoS Attack Cuts Internet For Days

    Puerto Rico’s Justice Department Cyberattack

    State Actors Hit ConnectWise ScreenConnect

    Ivanti Flaw Hits NHS Staff and Patient Data

    Amalgamated Sugar Data Breach Exposes SSNs

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial