Join RH-ISAC for a threat briefing about the latest intel on observed incidents and emerging threats relevant to the retail and hospitality community, as well as mitigation or response techniques. This month’s briefing will feature intel and research from RH-ISAC Associate Members:

EncryptHub’s Expanding Arsenal

EncryptHub (also known as LARVA-208 and Water Gamayun) has been making headlines for its increasingly aggressive campaigns. Targets include Web3 developers, with abuse of platforms such as Steam to deliver malicious payloads. As of February, reports confirmed 618 organizations worldwide had their networks compromised by the EncryptHub threat actor. The Trustwave SpiderLabs Research team recently observed an EncryptHub campaign combining social engineering with exploitation of the Microsoft Management Console (MMC). This presentation from Trustwave will detail the specific attack chain observed in this campaign.

How Cybersecurity Can Strengthen Your Shield Against Retail Fraud

Retailers are increasingly targeted by adversaries due to reliance on digital transactions, point-of-sale systems, and eCommerce platforms. Fraud schemes such as account takeovers, gift card scams, and fake returns exploit gaps in cybersecurity infrastructure and identity verification. In this presentation, Splunk explores how retailers can enhance fraud prevention through:

  • AI-driven anomaly detection
  • Real-time monitoring to quickly identify and prevent fraud
  • Streamlined investigations to strengthen defenses
  • By making cybersecurity central to fraud prevention, retailers can:
  • Boost customer trust
  • Reduce financial losses
  • Protect their brand in today’s evolving threat landscape