Beware of Job-Hunting Hackers: FIN6’s New Resume Ruse Targets Recruiters!
FIN6, also known as Skeleton Spider, is flipping the script by impersonating job seekers to target recruiters with malware. Armed with fake resumes and phishing sites, they deliver the “More Eggs” backdoor. This cunning twist on social engineering should make HR departments as cautious as a cat in a room full of rocking chairs.

Hot Take:
Looks like FIN6 has traded in their ski masks for power suits and briefcases, proving that even cybercriminals can have a mid-career crisis! By impersonating job seekers, these digital rogues have taken social engineering to HR departments with the finesse of a LinkedIn influencer. Who knew the ‘More Eggs’ malware was the ultimate career coach, helping hackers land the job of infiltrating your systems?
Key Points:
– FIN6, a notorious hacking group, now impersonates job seekers to target recruiters.
– They use LinkedIn and Indeed to build rapport before sending phishing emails.
– Emails contain non-clickable URLs to evade detection, leading to malware sites.
– Their malware, “More Eggs,” is a JavaScript backdoor used for various cybercrimes.
– FIN6 uses environmental fingerprinting to ensure only intended victims are targeted.