CISA Warns of Renewed Emotet Activity

The Emotet malware dropper is seeing an upsurge in new activity in the second half of 2020.

Dark Reading Staff, Dark Reading

October 8, 2020

1 Min Read
Dark Reading logo in a gray background | Dark Reading

The Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA) and the Multi-State Information Sharing & Analysis Center (MS-ISAC) have released a warning about an upsurge in malware campaigns using Emotet, a Trojan "dropper" that carries other malware to its victims.

According to the alert, CISA's EINSTEIN intrusion detection system has detected roughly 16,000 alerts related to Emotet activity on federal civilian executive branch networks since July. Current Emotet campaigns are tending to use weaponized Microsoft Word documents attached to phishing email messages to spread the malware. Emotet then employs a variety of shifting and evolving libraries and executable files to evade detection by malware protection systems.

Read more here.

About the Author

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights