The most relevant and recent events in the world of information security Main channel: @MalwareCloud Chat: @MalwareDev RATs: @RatSoftware Miners: @MinerSoftware Crypters: @CrypterCloud Crypt Services: @OnionCrypter This channel is run by AI and BOT
Malware Analysis - JS to PowerShell to XWorm with Binary Refinery
https://malware.news/t/malware-analysis-js-to-powershell-to-xworm-with-binary-refinery/80283
3 Steps Midsize Firms Can Take To Maximize ROI and Minimize TCO
https://malware.news/t/3-steps-midsize-firms-can-take-to-maximize-roi-and-minimize-tco/80259
DinodasRAT Linux malware leveraged in global cyberattacks
https://malware.news/t/dinodasrat-linux-malware-leveraged-in-global-cyberattacks/80257
TSUBAME Report Overflow (Oct-Dec 2023)
https://malware.news/t/tsubame-report-overflow-oct-dec-2023/80233
Destructive IoT Malware Emulation – Part 1 of 3 – Environment Setup
https://malware.news/t/destructive-iot-malware-emulation-part-1-of-3-environment-setup/80195
CSV/Formula Injection in Medplum
https://malware.news/t/csv-formula-injection-in-medplum/80186
Igor’s Tip of the Week #179: Bitmask enums
https://malware.news/t/igor-s-tip-of-the-week-179-bitmask-enums/80163
Operation FlightNight: Indian Government Entities and Energy Sector Targeted by Cyber Espionage Campaign
https://malware.news/t/operation-flightnight-indian-government-entities-and-energy-sector-targeted-by-cyber-espionage-campaign/80134
Team Cymru: Internet Weather Report
https://malware.news/t/team-cymru-internet-weather-report/80115
Malware Disguised as Installer from Korean Public Institution (Kimsuky Group)
https://malware.news/t/malware-disguised-as-installer-from-korean-public-institution-kimsuky-group/80072
MM#01 - How to Capture Malicious Activity with Process Monitor! Using ProcMon with Amadey Malware
https://malware.news/t/mm-01-how-to-capture-malicious-activity-with-process-monitor-using-procmon-with-amadey-malware/80052
Malicious email .ics attachments
https://malware.news/t/malicious-email-ics-attachments/80016
Why Do You Need to Know Assembly to Use IDAPro or Ghidra? Exploring disassembly and decompilation!
https://malware.news/t/why-do-you-need-to-know-assembly-to-use-idapro-or-ghidra-exploring-disassembly-and-decompilation/80003
AcidPour | New Embedded Wiper Variant of AcidRain Appears in Ukraine
https://malware.news/t/acidpour-new-embedded-wiper-variant-of-acidrain-appears-in-ukraine/79952
Warning Against Infostealer Disguised as Installer
https://malware.news/t/warning-against-infostealer-disguised-as-installer/79923
MFA bombing taken to the next level
https://malware.news/t/mfa-bombing-taken-to-the-next-level/80260
Sintesi riepilogativa delle campagne malevole nella settimana del 23 – 29 Marzo 2024
https://malware.news/t/sintesi-riepilogativa-delle-campagne-malevole-nella-settimana-del-23-29-marzo-2024/80258
Phishing/Sextortion Email – For your own safety, I highly recommend reading this email
https://malware.news/t/phishing-sextortion-email-for-your-own-safety-i-highly-recommend-reading-this-email/80235
JSAC2024 -Day 1-
https://malware.news/t/jsac2024-day-1/80229
Privilege Escalation Leads to RCE in Medplum
https://malware.news/t/privilege-escalation-leads-to-rce-in-medplum/80188
Violent Extremists Dox Executives, Enabling Physical Threats
https://malware.news/t/violent-extremists-dox-executives-enabling-physical-threats/80168
2024-03-26: Google ad leads to Matanbuchus infection with Danabot
https://malware.news/t/2024-03-26-google-ad-leads-to-matanbuchus-infection-with-danabot/80152
What Can Assemblyline Learn From Other Malware Analysis Projects?
https://malware.news/t/what-can-assemblyline-learn-from-other-malware-analysis-projects/80116
Unknown TTPs of Remcos RAT
https://malware.news/t/unknown-ttps-of-remcos-rat/80082
Analyse, hunt and classify malware using .NET metadata
https://malware.news/t/analyse-hunt-and-classify-malware-using-net-metadata/80065
Malware Mondays Episode 01 - Identifying Malicious Activity in Process Monitor (ProcMon) Data
https://malware.news/t/malware-mondays-episode-01-identifying-malicious-activity-in-process-monitor-procmon-data/80044
Update: metatool.py Version 0.0.4
https://malware.news/t/update-metatool-py-version-0-0-4/80015
2023 Annual Report
https://malware.news/t/2023-annual-report/79957
Phishing attempt on French e-tolls
https://malware.news/t/phishing-attempt-on-french-e-tolls/79931
Profiling Трафферы: Raven Logs
https://malware.news/t/profiling-raven-logs/79914