Phishing campaigns delivering malware families such as DarkGate and PikaBot are following the same tactics previously used in attacks leveraging the now-defunct QakBot trojan.
"These include hijacked email threads as the initial infection, URLs with unique patterns that limit user access, and an infection chain nearly identical to what we have seen with QakBot delivery," Cofense
said in a report shared with The Hacker News.
"The malware families used also follow suit to what we would expect QakBot affiliates to use."
https://thn.news/JwVc0AZY