Budworm Threat Group Attacks Reveal ‘Change in Focus’

Cyber-espionage group Budworm is leveraging the Log4j vulnerability to target high-value organisations worldwide, including a US state legislature and a Middle Eastern government. Previously, Budworm mainly focused on Asia, Middle East, and Europe, but its recent shift towards US targets signals a change in strategy. The group exploits Log4j flaws to compromise networks, using the HyperBro malware family as its main payload. Symantec suggests that Budworm’s goal is information theft.