I've published the second in a series of blog posts on SocGholish related activity. The latest installment focuses on breaking down the fake update payload itself.
https://rerednawyerg.github.io/malware-analysis/socgholish_part2/
#socgholish #malware #intel #fakeupdates
I've been wanting to start a malware analysis/RE blog as I improve my skills. I published my first analysis a few days ago. Started out by analyzing a site with a malicious JavaScript inject leading to a SocGholish payload.
#socgholish #malware #fakeupdates
On today's #TTILive, we're back at it with some more #Malware Analysis! I have a fresh #FakeUpdates/#SocGholish sample to pick apart. Join the investigation live at 17:00 PST/ 01:00 UTC! https://twitch.tv/mttaggart
#ttilive #malware #fakeupdates #infosec #cybersecurity
The fruit of today's labors: https://otx.alienvault.com/pulse/63b4bfa2cb30ff4a9b202bbe
#fakeupdates #threatintel #infosec #cybersecurity
#SocGholish #malware #reverseengineering #fakeupdates
This code is a mess! Does anyone have any tips on decoding javascript like this?
#SocGholish #malware #reverseengineering #fakeupdates
Microsoft Teams Users Under Attack in ‘FakeUpdates’ Malware Campaign - Microsoft warns that cybercriminals are using Cobalt Strike to infect entire networks beyond the i... https://threatpost.com/microsoft-teams-fakeupdates-malware/161071/ #predatorthethief #vulnerabilities #microsoftteams #cobaltstrike #websecurity #fakeupdates #infostealer #ransomware #zerologon #covid-19 #malware #hacks
#hacks #malware #covid #zerologon #ransomware #infostealer #fakeupdates #websecurity #cobaltstrike #microsoftteams #vulnerabilities #predatorthethief