malwareresearch | Unsorted

Telegram-канал malwareresearch - Malware Research

9374

Group for Malware Analysts. Pinned message with resources and rules: https://t.me/MalwareResearch/38033

Subscribe to a channel

Malware Research

I'm unable to find the source code about Pegasus. It was really impressive. Pegasus was zero click rat.


There's a curiosity about that.

Читать полностью…

Malware Research

Read numerous reports

Читать полностью…

Malware Research

Your request is pretty shady I would say

Читать полностью…

Malware Research

Just for learning purpose.

Читать полностью…

Malware Research

What you're going to do with that?

Читать полностью…

Malware Research

Does anyone know about Pegasus?

anyone could guide me about the zero click exploit or one tap rat.

And it must be working for both iOS and Android.

Читать полностью…

Malware Research

Basically I am new to this the sandbox is developed by my company and right now I am testing it by executing different different malware and I am checking the level of accuracy I have no idea about the backend and what criteria they are following i get instruction that I have to test it and check the accuracy level and make a report regarding it

Читать полностью…

Malware Research

User Kin has 1/3 warnings; be careful!
Reason:
language in chat is English. Read rules

Читать полностью…

Malware Research

Exactly. Fresh hashes are useful only after we define whether the test is about a family, a behaviour or an evasion technique. Otherwise "new" does too much work.

Читать полностью…

Malware Research

Define "new"?

Commodity malware like Agent Tesla, Vidar have thousands of hashes daily and you can pull it from Malware Bazaar via API

Malware that gets caught by generic rules but belonging to another family or new family is another thing

Читать полностью…

Malware Research

For a sandbox test, I would use curated samples with known behaviour and keep the lab disposable and isolated. What signal do you need to validate first?

Читать полностью…

Malware Research

I am already using that

Читать полностью…

Malware Research

hey i am threat hunter and i am testing my sandbox so i want some new malware sample to test my sandbox so any one can help me with that

Читать полностью…

Malware Research

Could someone please help me download this sample?

f1246fd6af3a426fed75a23618b2e78f47864d7687d750b6f40c752cc06107f6

Читать полностью…

Malware Research

almost every malware has similar observable behaviour. How do you based on those determine the family?

almost every malware will persist, has network activity, makes system changes for all kinds of reasons

if I observe this in this malware A, then do I assign it to family A, B, or C?

Читать полностью…

Malware Research

It's an old beast, well known and researched

Читать полностью…

Malware Research

How to build one tap rat or zero click.

And how it works

Читать полностью…

Malware Research

So what exactly you wanna learn?

Читать полностью…

Malware Research

You submitted the same malware on different sandboxes and got different results, so you want different samples to test?

What's this logic?

Please explain what you are trying to do

Читать полностью…

Malware Research

This is site which describes how not to do and why not to do that.

Читать полностью…

Malware Research

Why i want new malware is when ever I try to test the malewrebaazar files the sand box gives the verdict my matching hash value but when ever I try use different platform malware sample I get totally different verdict that's why I need new Malware sample

Читать полностью…

Malware Research

https://nohello.net/en/

Читать полностью…

Malware Research

/warn language in chat is English. Read rules

Читать полностью…

Malware Research

He asked for new samples

You can pull thousands of new samples from Malware Bazaar, but they are all likely from the same few families and that may not mean "new" to him

So it's important to clarify what is "new"

Читать полностью…

Malware Research

It can be considered if there's enough time to do so

Читать полностью…

Malware Research

But thank u for suggestion

Читать полностью…

Malware Research

https://vx-underground.org/Samples

Читать полностью…

Malware Research

A sample request is easier to assess when it includes the research question and the handling plan, not only a hash. That helps people decide whether sharing is appropriate and makes the result easier to reproduce.

Читать полностью…

Malware Research

Generic persistence and network activity are triage signals, not a family label. I would keep it unknown until more specific evidence lines up, such as code lineage or a distinctive configuration format. The important thing is to separate what was observed from what was inferred.

Читать полностью…

Malware Research

Before assigning a malware family, I prefer to record the observable behaviour first: persistence, network activity and file changes. What early evidence has proved most reliable for others here?

Читать полностью…
Subscribe to a channel