You are here |
www.huntandhackett.com | ||
| | | |
securityinaction.wordpress.com
|
|
| | | | TL; DR In recent months threat actors have been leveraging alternative means of compromising Windows based systems in order to evade detection. Make certain to download and install software from legitimate sources and where possible make use of the Windows driver blocklist (further recommendations listed below). ==================== By employing techniques such as DLL sideloading (defined... | |
| | | |
www.cybereason.com
|
|
| | | | Cybereason GSOC observed distribution of the Bumblebee Loader and post-exploitation activities including privilege escalation, reconnaissance and credential theft. Bumblebee operators use the Cobalt Strike framework throughout the attack and abuse credentials for privilege escalation to access Active Directory, as well as abusing a domain administrator account to move laterally, create local user accounts and exfiltrate data... | |
| | | |
www.trendmicro.com
|
|
| | | | We take a closer look at the operations of Clop, a prolific ransomware family that has gained notoriety for its high-profile attacks. We review this ransomware group's constantly changing schemes and discuss how companies can shore up defenses against this threat. | |
| | | |
davidlynch.org
|
|
| | After I posted about my Sublime Text 2 git plugin I got one response which I thought was worth responding to. That looks helpful, but I often wonder why not just use an IDE if you want IDE features. Obviously I have a bias here, but I'll try to be... |