Polyglot Malware Hits UAE Aviation Firms

Aviation firms in the UAE were targeted by a sophisticated BEC attack using polyglot malware to deploy a Go-based backdoor called Sosano. The attackers utilized a compromised email account to evade detection, showing similarities to Iran-linked groups, though remaining a distinct entity.

πŸ›‘οΈ Aviation firms in UAE face sophisticated BEC attacks via polyglot malware. Proofpoint links tactics to potential Iran-aligned groups. How secure is your email? #CyberSecurity #Aviation #BEC #TechRadar


  1. Aviation firms in the UAE were targeted by a sophisticated business email compromise (BEC) attack using polyglot files to deploy malware.
  2. The attackers used a compromised email account to share these files, aiming to install a custom Go-based backdoor called Sosano.
  3. While similarities exist with Iran-linked groups, the UNK_CraftyCamel actors remain distinct, focusing on aviation and satellite communications targets.

Source: Staff, Techradar: Aviaton firms hit by devious new polyglot malware.

All Things Cyber–

Community news and updates coming soon.
Link launched πŸ“‘ Avoid spam wormholes and check the 'Promotions' folder.
This is fine πŸ”₯ Well, that didn't work. Try again, fren.