Advisories by BGD e-GOV CIRT

Post Image
Agentic Driven Cloud Attack Using Compromised Service Principals
The investigated activity involved two compromised service principals. One primarily performed reconnaissance, while the second performed extensive di....
01-Oct-2026 12:00:00
Read Details
Post Image
SideCopy Campaign Using MSHTA, Weaponized LNK and Fileless RAT Execution
BGD e-GOV CIRT has reviewed recent reporting on a SideCopy campaign employing spear- phishing, weaponized Windows shortcut (.LNK) files, mshta.exe, mu....
23-Sep-2026 14:30:00
Read Details
Post Image
SideWinder-Associated Campaign Targeting South Asian Government and Financial Infrastructure
The recovered toolkit included exploitation capability against GeoServer/GeoTools, Laravel Ignition, Apache Tomcat Manager and Redis, as well as weak-....
17-Sep-2026 15:00:00
Read Details
Post Image
Passkey-Themed Social Engineering Campaign Targeting Cloud Identities and SaaS Data
BGD e-GOV CIRT is issuing this advisory regarding an active social-engineering campaign in which threat actors use passkey, MFA, SSO and identity-veri....
14-Sep-2026 14:30:00
Read Details
Post Image
Python NodeStealer Evolves into Full- Featured Spyware: Browser, Credential, Clipboard, Keylogging and Facebook Account Intelligence Theft
NodeStealer has been tracked since 2023 as an information-stealing malware family targeting browser information and Facebook accounts. Previous versio....
06-Sep-2026 15:30:00
Read Details
Post Image
TerminalFix Campaign: ClickFix- Based Multistage Intrusion Deploying Reverse Tunneling and Active Directory Reconnaissance
This effectively turns the infected workstation into a proxy/pivot point inside the organization's trusted network. Microsoft specifically describes t....
02-Sep-2026 15:30:00
Read Details