Researchers have uncovered a 230-node cloud-based email relay network operated by the threat actor PCPJack, revealed due to exposed C2 tools and logs. The operation utilizes compromised cloud servers across AWS, Google Cloud, and Azure, with a toolkit including Sliver and Chisel for covert email relay and persistence. Cybersecurity professionals should be aware of this sophisticated infrastructure, its potential use for large-scale spam or phishing, and the importance of securing cloud environments against such compromises.
Read the full article at Security Affairs
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.





