Cobi Aloia
Senior Threat Analyst
Cobi Aloia is a Senior Threat Analyst at Cofense, where he works within the Phishing Defense Center (PDC) supporting the Managed Phishing Detection and Response (MPDR) product. In this role, he helps protect customers from evolving email-based threats. With five years at Cofense and more than seven years of cybersecurity experience, Cobi brings a strong background in phishing defense, malware analysis, threat research, and security automation. His work focuses on identifying emerging attack trends, analyzing malicious campaigns, and helping organizations better defend against today’s threat landscape.
Cobi Aloia
1 post
Click, Install, Compromised: The New Wave of Zoom-Themed Attacks
This blog explains how threat actors are evolving beyond traditional credential phishing by using convincing Zoom-themed social engineering attacks to trick users into installing ConnectWise ScreenConnect, a legitimate remote monitoring tool that can provide attackers with persistent remote access to compromised systems. The campaign uses realistic fake Zoom meeting pages, audio playback, and fraudulent software update prompts to persuade victims to execute a disguised VBS installer that silently downloads and launches the ScreenConnect payload. The article highlights how attackers increasingly abuse trusted platforms and legitimate administrative tools to blend malicious activity into normal enterprise behavior, enabling credential theft, reconnaissance, lateral movement, and potential ransomware deployment.