Site icon TheCyberThrone

Wild pressure APT

Advertisements

WildPressure APT group is now targeting industrial organizations based in the Middle East. The trojan, named Milum, targets both Windows and macOS systems. The new version being employed in recent attacks by WildPressure. It is named Milum due to the use of C++ class names inside the malware.

Additional insights

The WildPressure APT group has used Python programming language as well for their malware. A Pyinstaller module is used for Windows using a script named Guard. It is developed for both Windows and macOS. 

Final thoughts

Researchers identified similarities in the techniques of the WildPressure APT and BlackShadow, which also targets organizations in the Middle East. The observation wasn’t enough to come to any attribution conclusion. Meanwhile, experts warn about the active development of malware that could be targeting the oil and gas industry in the region.

Exit mobile version