BazarCallBazarCall

Also known as: BazzarCall · BazaCall · BazarCall

Known aliases
3

Profile

BazarCall campaigns forgo malicious links or attachments in email messages in favor of phone numbers that recipients are misled into calling. It’s a technique reminiscent of vishing and tech support scams where potential victims are being cold called by the attacker, except in BazarCall’s case, targeted users must dial the number. And when they do, the users are connected with actual humans on the other end of the line, who then provide step-by-step instructions for installing malware into their devices.

Aliases· 3

BazzarCallBazaCallBazarCall

References

  1. https://www.trellix.com/en-us/about/newsroom/stories/research/evolution-of-bazarcall-social-engineering-tactics.html
  2. https://www.microsoft.com/en-us/security/blog/2021/07/29/bazacall-phony-call-centers-lead-to-exfiltration-and-ransomware/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
Bazar
Actor
Bahamut
Sub-technique
Spearphishing Voice
Software
PhoneNumber
CAPEC
Voice Phishing
Actor
GOLD CABIN
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.