Email Bombing and DNS MX Records Used to Deploy AOBackdoor by Blitz Brigantine
A threat group tracked as Blitz Brigantine is using email bombing and fake Microsoft Teams support to gain remote access via the built-in Windows Quick Assist application.
Pulse ID: 69b82da527fb3abea56d5ac5
Pulse Link: https://otx.alienvault.com/pulse/69b82da527fb3abea56d5ac5
Pulse Author: cryptocti
Created: 2026-03-16 16:19:49
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #CyberSecurity #DNS #Email #InfoSec #Microsoft #MicrosoftTeams #OTX #OpenThreatExchange #Windows #bot #cryptocti