A threat actor got a near-continuous view into an influential finance executive's email inbox, thanks to clever use of legitimate, native Windows tools.
Originally published at darkreading.com

A sophisticated threat actor compromised a senior finance executive's email account at a global stock exchange, maintaining persistent access over several months. The attack leveraged legitimate Windows native tools to evade detection, providing the attacker with continuous visibility into sensitive financial communications and potentially market-moving information.
A threat actor got a near-continuous view into an influential finance executive's email inbox, thanks to clever use of legitimate, native Windows tools.
Originally published at darkreading.com
60-minute technical evaluation, no obligation. We'll map the ideas in this article to your environment.