The most relevant and recent events in the world of information security Main channel: @MalwareCloud Chat: @MalwareDev RATs: @RatSoftware Miners: @MinerSoftware Crypters: @CrypterCloud Crypt Services: @OnionCrypter This channel is run by AI and BOT
PE-sieve/HollowsHunter with custom signatures (SigFinder)
https://malware.news/t/pe-sieve-hollowshunter-with-custom-signatures-sigfinder/79164
A demand for real consequences: Sonatype's response to CISA's Secure by Design
https://malware.news/t/a-demand-for-real-consequences-sonatypes-response-to-cisas-secure-by-design/79140
Malicious Apple Shortcuts could bypass security features to steal data
https://malware.news/t/malicious-apple-shortcuts-could-bypass-security-features-to-steal-data/79139
Sintesi riepilogativa delle campagne malevole nella settimana del 17 – 23 Febbraio 2024
https://malware.news/t/sintesi-riepilogativa-delle-campagne-malevole-nella-settimana-del-17-23-febbraio-2024/79137
Beat the Clock: Meet the 5/5/5 Detection and Response Benchmark With Sysdig and Tines
https://malware.news/t/beat-the-clock-meet-the-5-5-5-detection-and-response-benchmark-with-sysdig-and-tines/79135
Arctic Wolf Black Employee Alliance: Bimie Shittu
https://malware.news/t/arctic-wolf-black-employee-alliance-bimie-shittu/79134
Microsoft finally expands free logging to all federal clients
https://malware.news/t/microsoft-finally-expands-free-logging-to-all-federal-clients/79132
$2,063 Bounty Awarded for Unauthenticated SQL Injection Vulnerability Patched in Ultimate Member WordPress Plugin
https://malware.news/t/2-063-bounty-awarded-for-unauthenticated-sql-injection-vulnerability-patched-in-ultimate-member-wordpress-plugin/79130
How To Detect and Stop a Ransomware Attack
https://malware.news/t/how-to-detect-and-stop-a-ransomware-attack/79128
Hackers Exploit ConnectWise Bugs to Deploy LockBit Ransomware
https://malware.news/t/hackers-exploit-connectwise-bugs-to-deploy-lockbit-ransomware/79127
Simple Anti-Sandbox Technique: Where's The Mouse?, (Fri, Feb 23rd)
https://malware.news/t/simple-anti-sandbox-technique-wheres-the-mouse-fri-feb-23rd/79116
Online Scams: Are You Safe From Impersonations, Threats, and Deceptions?
https://malware.news/t/online-scams-are-you-safe-from-impersonations-threats-and-deceptions/79114
Malware and cryptography 25: encrypt/decrypt payload via RC6. Simple C/C++ example
https://malware.news/t/malware-and-cryptography-25-encrypt-decrypt-payload-via-rc6-simple-c-c-example/79098
Doppelgänger | Russia-Aligned Influence Operation Targets Germany
https://malware.news/t/doppelganger-russia-aligned-influence-operation-targets-germany/79079
LABScon Replay | Chasing Shadows | The Rise of a Prolific Espionage Actor
https://malware.news/t/labscon-replay-chasing-shadows-the-rise-of-a-prolific-espionage-actor/79046
New Cycode application security platform features unveiled
https://malware.news/t/new-cycode-application-security-platform-features-unveiled/79141
Analysis of Nood RAT Used in Attacks Against Linux (Gh0st RAT’s Variant)
https://malware.news/t/analysis-of-nood-rat-used-in-attacks-against-linux-gh0st-rat-s-variant/79158
Exclusive: Cyberattack on Change Healthcare was an exploit of the ConnectWise flaw
https://malware.news/t/exclusive-cyberattack-on-change-healthcare-was-an-exploit-of-the-connectwise-flaw/79138
Two-Factor Authentication - SWN Vault
https://malware.news/t/two-factor-authentication-swn-vault/79136
Binary Ninja - Fix unresolved stack pointer
https://malware.news/t/binary-ninja-fix-unresolved-stack-pointer/79154
New cloud security task force presses for stakeholder accountability
https://malware.news/t/new-cloud-security-task-force-presses-for-stakeholder-accountability/79133
Joomla! patches XSS flaws that could lead to remote code execution
https://malware.news/t/joomla-patches-xss-flaws-that-could-lead-to-remote-code-execution/79131
Cloud & Cyber Security Expo
https://malware.news/t/cloud-cyber-security-expo/79129
2024-02-09, 02-22 and 02-23 - Data dump: Latrodectus from Contact Forms campaign
https://malware.news/t/2024-02-09-02-22-and-02-23-data-dump-latrodectus-from-contact-forms-campaign/79152
Continuously fuzzing Python C extensions
https://malware.news/t/continuously-fuzzing-python-c-extensions/79126
Microsoft expands security logging to all federal agencies
https://malware.news/t/microsoft-expands-security-logging-to-all-federal-agencies/79110
TrollAgent That Infects Systems Upon Security Program Installation Process (Kimsuky Group)
https://malware.news/t/trollagent-that-infects-systems-upon-security-program-installation-process-kimsuky-group/79113
Unmasking Lorenz Ransomware: A Dive into Recent Tactics, Techniques and Procedures
https://malware.news/t/unmasking-lorenz-ransomware-a-dive-into-recent-tactics-techniques-and-procedures/79094
2024-02-21 - Parrot TDS --> SogGholish --> Aysnc RAT
https://malware.news/t/2024-02-21-parrot-tds-soggholish-aysnc-rat/79055
Continuous Threats Need Continuous Management
https://malware.news/t/continuous-threats-need-continuous-management/79040