DEV-0928 is a threat actor tracked by Microsoft since 2022, known for conducting large-scale phishing campaigns.
Analyst brief
DEV-0928 is a threat actor tracked by Microsoft since September 2022, known for conducting high-volume phishing campaigns. This actor targets unspecified victims, using tools provided by DEV-1101 to send millions of phishing emails. Their key TTPs include large-scale phishing and evasion through redirection to benign pages to avoid detection. Defenders should focus on email security posture, monitor for suspicious redirection chains, and enhance user awareness against phishing threats.
DEV-0928
unknown
DEV-0928 is a threat actor that has been tracked by Microsoft since September 2022. They are known for their involvement in high-volume phishing campaigns, using tools offered by DEV-1101. DEV-0928 sends phishing emails to targets and has been observed launching campaigns involving millions of emails. They also utilize evasion techniques, such as redirection to benign pages, to avoid detection.