SocGholish

Description

(Menlo Labs) The term “Soc” in the “SocGholish” framework refers to the attack’s use of social engineering toolkits masquerading as a software update. Thus far, Menlo has observed this particular framework using several social engineering themes that impersonate browser updates (Chrome/Firefox), Flash Player updates, and more recently, Microsoft Teams updates.

Names

Name
SocGholish
FAKEUPDATES
FakeUpdate

Category

Malware

Type

  • Downloader

Information

Mitre Attack

Malpedia

Other Information

Uuid

9da2592e-91a9-4ee1-a05e-fe50fb16bffe

Last Card Change

2024-12-27