The Not-So-Secret Network Access Broker x999xx

Most accomplished cybercriminals go out of their way to separate their real names from their hacker handles. But among certain old-school Russian hackers it is not uncommon to find major players who have done little to prevent people from figuring out who they are in real life. A case study in this phenomenon is “x999xx,” the nickname chosen by a venerated Russian hacker who specializes in providing the initial network access to various ransomware groups. Continue reading The Not-So-Secret Network Access Broker x999xx

Gelsemium APT Group Uses “Rare” Backdoor in Southeast Asian Attack

By Waqas
Elusive APT Group ‘Gelsemium’ Emerges in Rare Southeast Asian Attack, Unveils Unique Tactics. KEY FINDINGS Cybersecurity researchers at…
This is a post from HackRead.com Read the original post: Gelsemium APT Group Uses &#8220… Continue reading Gelsemium APT Group Uses “Rare” Backdoor in Southeast Asian Attack

Cobalt Strike and YARA: Can I Have Your Signature?

Over the past few years, there has been a massive proliferation of YARA signatures for Beacon. We know from conversations with our customers that this has become problematic when using Cobalt Strike for red team engagements and that there has been some confusion over how Cobalt Strike’s malleable C2 options can help.   Therefore, this blog […]

Read More…

Continue reading Cobalt Strike and YARA: Can I Have Your Signature?

Microsoft and Fortra to Take Down Malicious Cobalt Strike Infrastructure

By Deeba Ahmed
Cobalt Strike is a legitimate post-exploitation tool designed by Raphael Mudge of Fortra for adversary simulation but it has also been abused by cybercriminals.
This is a post from HackRead.com Read the original post: Microsoft and Fortr… Continue reading Microsoft and Fortra to Take Down Malicious Cobalt Strike Infrastructure

Technical, Legal Action Taken to Prevent Abuse of Cobalt Strike, Microsoft Software

Microsoft, Fortra and Health-ISAC have taken legal and technical action to prevent the abuse of the Cobalt Strike exploitation tool and Microsoft software.
The post Technical, Legal Action Taken to Prevent Abuse of Cobalt Strike, Microsoft Software ap… Continue reading Technical, Legal Action Taken to Prevent Abuse of Cobalt Strike, Microsoft Software

Microsoft leads effort to disrupt illicit use of Cobalt Strike, a dangerous hacking tool in the wrong hands

The action against illicit versions of legitimate Cobalt Strike applications represents the culmination of a year-long investigation.

The post Microsoft leads effort to disrupt illicit use of Cobalt Strike, a dangerous hacking tool in the wrong hands appeared first on CyberScoop.

Continue reading Microsoft leads effort to disrupt illicit use of Cobalt Strike, a dangerous hacking tool in the wrong hands

Cobalt Strike 2023 Roadmap and Strategy Update

I blogged about the Cobalt Strike roadmap in March last year and while the fundamental tenets of our approach to R&D remain unaltered, a lot has changed behind the scenes over the past year or so. I try to engage with our customers on various platforms and over the past few months, I’ve been asked […]

Read More…

Continue reading Cobalt Strike 2023 Roadmap and Strategy Update