ZeroFox Weekly Intelligence Brief – August 5, 2024
|by Alpha Team

ZeroFox Weekly Intelligence Brief – August 5, 2024
ZeroFox’s Weekly Intelligence Briefing highlights the major developments and trends across the cyber threat landscape. ZeroFox Intelligence is derived from a variety of sources, including—but not limited to—curated open-source accesses, vetted social media, proprietary data sources, and direct access to threat actors and groups through covert communication channels. Information relied upon to complete any report cannot always be independently verified. As such, ZeroFox applies rigorous analytic standards and tradecraft in accordance with best practices and includes caveat language and source citations to clearly identify the veracity of our Intelligence reporting and substantiate our assessments and recommendations. All sources used in this particular Intelligence product were identified prior to 12:00 PM (EDT) on August 2, 2024; per cyber hygiene best practices, caution is advised when clicking on any third-party links.
Read the Brief
View the full report here
Paris Olympics Face Myriad Cyber Threats
What happened: The Paris Olympics has been facing and will continue to face various cyber threats—including data breaches and distributed denial-of-service (DDoS) attacks—from politically and financially motivated actors. An alleged doxxing attack attributed to threat actor “Zeus” exposed some sensitive data belonging to Israeli athletes participating in the Paris Olympics on Telegram. The type of data exposed, which allegedly includes military statuses, blood test results, and login credentials, has prompted France's Anti-Cybercrime Office (OFAC) to intervene. On July 29, ZeroFox Intelligence observed pro-Palestine hacktivist group “Anonymous Collective” claiming to conduct a DDoS attack against the websites of the Israel Swimming Association and the Israel Pro Football Leagues under its ongoing operations #ParisOlympics2024 and #OpIsrael. On July 31, threat actor group “LulzSec Muslims” claimed to have leaked a database associated with the Paris Olympic Games. Additionally, French authorities have stated that they detected and thwarted 68 cyberattacks since July 22, two of which were directly related to the Olympics.
FBI Warns About Crypto Scammers
What happened: The Federal Bureau of Investigation (FBI) has warned that scammers are impersonating cryptocurrency exchange employees to steal funds. Scammers contact victims through unsolicited calls or messages, create a sense of urgency, and deceive victims into revealing login credentials. The scammers then access victims' accounts and steal their cryptocurrency.
China-Backed Phishing Attack Targets India Postal System Users
What happened: A China-based hacking group known as “Smishing Triad” targeted iPhone users in India with phishing attacks through text messages. The messages falsely claimed that a package was waiting at an India Post warehouse and contained URLs leading to fraudulent websites. Over 470 domains mimicking the India Post's official domain were registered between January and July 2024, primarily through Chinese and American registrars. Phishing emails were also sent via iMessage using third-party email services.
Tags: tlp:green