ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online
Joxean Koret (@matalaz) · @joxean
1055 followers · 11011 posts · Server mastodon.social

RT @craiu@twitter.com

Now that a x64 TEARDROP sample became available (6e4050c6a2d2e5e49606d96dd2922da480f2e0c70082cc7e54449a7dc0d20f8d), it should be easier to link to older and parallel activity, which eventually will lead to connecting to known actor(s).

🐦🔗: twitter.com/craiu/status/13399

#UNC2452 #darkhalo

Last updated 4 years ago

Joxean Koret (@matalaz) · @joxean
1055 followers · 11011 posts · Server mastodon.social

RT @craiu@twitter.com

We are releasing some new findings in the story. Our analysis plus an opensource tool that decodes and matches the UIDs from the CNAME records against publicly available pDNS data: securelist.com/sunburst-connec

🐦🔗: twitter.com/craiu/status/13399

#UNC2452 #sunburst #darkhalo #solarwinds

Last updated 4 years ago