Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
High
BlindEagle is an Advanced Persistent Threat (APT) group that has been active since at least 2018 and is believed to be operating out of South America. The group is known for its targeted attacks on financial institutions and other organizations in the region and has used a variety of tools and techniques to achieve its objectives. The gang launched continual targeted attacks against Colombian government institutions as well as major firms in the financial sector, the petroleum industry, professional manufacturing, and so on. As with many APT groups, the full scope of BlindEagle’s capabilities and goals is not entirely clear, but it is considered to be a significant threat to organizations in the region.
BlindEagle is known to use custom malware, including QuasarRAT, as a key component of its attacks. QuasarRAT is a remote access Trojan (RAT) that allows the group to take full control of compromised systems and steal sensitive information. The group has also been observed using various other malware, including backdoors and keyloggers, to infiltrate and exfiltrate data from targeted systems.
In terms of its objectives, BlindEagle is primarily focused on stealing sensitive financial information from targeted organizations. The group has been observed stealing online banking credentials, credit card numbers, and other financial data. It is also believed to be working to gain access to sensitive government information and to compromise critical infrastructure in the region.
This APT group is considered to be a significant threat to organizations in South America, particularly those in the financial sector. To defend against BlindEagle, organizations should implement strong security measures, including firewalls, antivirus software, and intrusion detection systems, and educate their employees on best practices for avoiding phishing scams and other social engineering tactics.
In a recent campaign, the group was found targeting South American bank account by QuasarRAT.