|
You are here |
blog.talosintelligence.com | ||
| | | | |
thehackernews.com
|
|
| | | | | EDRKillShifter, a new tool linked to RansomHub ransomware, targets EDR software, posing a growing threat to endpoint security. | |
| | | | |
www.cybereason.com
|
|
| | | | | Cybereason GSOC observed distribution of the Bumblebee Loader and post-exploitation activities including privilege escalation, reconnaissance and credential theft. Bumblebee operators use the Cobalt Strike framework throughout the attack and abuse credentials for privilege escalation to access Active Directory, as well as abusing a domain administrator account to move laterally, create local user accounts and exfiltrate data... | |
| | | | |
blog.eclecticiq.com
|
|
| | | | | This issue of the Analyst Prompt looks at IRIDUIM's ransomware campaign causing disruption in Ukraine and Poland, the continued use of log4shell by threats actors across the threat landscape, and Australia's new joint standing operation to disrupt and stop cybercriminal syndicates. | |
| | | | |
taeluralexis.com
|
|
| | | We'll target a network comprising 3 machines, leveraging CVE exploits, pivoting, code obfuscation techniques, and AV bypass strategies. | ||