[SANS ISC] Remcos RAT Delivered Through Double Compressed Archive

I published the following diary on isc.sans.edu: “Remcos RAT Delivered Through Double Compressed Archive“: One of our readers shared an interesting sample received via email. Like him, if you get access to interesting/suspicious data, please share it with us (if you’re authorized of course). We are always looking for fresh

The post [SANS ISC] Remcos RAT Delivered Through Double Compressed Archive appeared first on /dev/random.

Continue reading [SANS ISC] Remcos RAT Delivered Through Double Compressed Archive

Unknown TA2541 group attacking aviation and defense sectors since 2017

By Deeba Ahmed
TA2541 is extensively using a variety of Remote Access Trojans (RAT) in spear-phishing attacks to lure their target.…
This is a post from HackRead.com Read the original post: Unknown TA2541 group attacking aviation and defense sect… Continue reading Unknown TA2541 group attacking aviation and defense sectors since 2017

[SANS ISC] CinaRAT Delivered Through HTML ID Attributes

I published the following diary on isc.sans.edu: “CinaRAT Delivered Through HTML ID Attributes“: A few days ago, I wrote a diary about a malicious ISO file being dropped via a simple HTML file. I found another sample that again drops a malicious ISO file but this time, it is much

The post [SANS ISC] CinaRAT Delivered Through HTML ID Attributes appeared first on /dev/random.

Continue reading [SANS ISC] CinaRAT Delivered Through HTML ID Attributes

2-year prison for pervert who hacked webcams to spy on underage girls

By Deeba Ahmed
Robert Davies was also one of the customers of now seized login credentials selling site WeLeakInfo. A Byron…
This is a post from HackRead.com Read the original post: 2-year prison for pervert who hacked webcams to spy on underage … Continue reading 2-year prison for pervert who hacked webcams to spy on underage girls

Indian APT exposes its Modus Operandi by infecting their own devices

By Waqas
The IT security researchers at Malwarebytes have published a report revealing details of an ironic incident involving Patchwork…
This is a post from HackRead.com Read the original post: Indian APT exposes its Modus Operandi by infecting … Continue reading Indian APT exposes its Modus Operandi by infecting their own devices

Looking for some advice/knowledge regarding malcious infection in Win10 [duplicate]

I’ll start by saying I’m a complete noob when it comes to anything computer forensics, malware analysis or anything similar.
Let’s just say i hypothetically in the past had downloaded some not so nice software that contained say a RAT, roo… Continue reading Looking for some advice/knowledge regarding malcious infection in Win10 [duplicate]

Remote access tools abused to spread malware and steal cryptocurrency

By Waqas
The new campaign also involves replacing cryptocurrency addresses shared via clipboard and setting up fake cryptocurrency websites.
This is a post from HackRead.com Read the original post: Remote access tools abused to spread malware and steal… Continue reading Remote access tools abused to spread malware and steal cryptocurrency