GHOSTPULSE malware loader deployed via fraudulent MSIX app packages

siteadmin October 31, 2023

Iranian state-backed threat operation Tortoiseshell (TA456), has launched new watering hole attacks to distribute the IMAPLoader malware. This operation is also known as Imperial Kitten, Yellow Liderc, and Crimson Sandstorm.