CashRewindoCashRewindo

Also known as: CashRewindo

Known aliases
1

Profile

CashRewindo is a sophisticated threat actor leveraging aged domains in global malvertising campaigns to direct victims to investment scam sites. The group employs TTPs such as flipping between scam ads and innocuous content, as well as A/B testing to exploit time-based creative verification systems. Their operations are characterized by tailored campaigns that utilize localized language and imagery across diverse regions, including Europe, Asia, Africa, and the Americas. Additionally, CashRewindo smuggles malicious code within common JavaScript libraries to enhance their effectiveness.

Aliases· 1

CashRewindo

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
Reckless Rabbit
Actor
ScamClub
Actor
Ruthless Rabbit
Actor
GhostRedirector
Actor
Markopolo
Actor
RevengeHotels
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.