"Sophisticated MATA Framework Strikes Eastern European Oil and Gas Companies"
"Sophisticated MATA Framework Strikes Eastern European Oil and Gas Companies"
As part of a cyber espionage operation between August 2022 and May 2023, an updated version of a sophisticated backdoor framework called MATA was used in attacks against more than a dozen Eastern European oil and gas sector and defense industry companies. The threat actors behind the attack used spear-phishing emails to target several victims. Some were infected with Windows executable malware by downloading files. Researchers say each phishing document has an external link to fetch a remote page containing a CVE-2021-26411 exploit.