DNC “Whaling” Hack in Alarming Detail via @pwnallthethings

For hackers using spearphishing as their method of attack, there are small bites and then there are whales. Whales are large value targets such as bankers, corporate executives, and of course high-ranking political officials such as John Podesta. This process of “whaling” is what allows hackers or groups of hackers such as APT28 and APT29 to gain access to DNC emails and infrastructure.

What follows is a breakdown of how the spearphishing attack on the DNC worked, with some great sleuthing from @pwnallthethings aka Matt Tait.

