By using a combination of Cortex XDR and the AutoFocus contextual threat intelligence service, Unit 42 discovered a recent Trickbot campaign leveraging legitimate cloud service providers to obfuscate malicious delivery behavior.

TrickBot Campaign Uses Fake Payroll Emails to Conduct Phishing Attacks