DGSec :verified: · @dgsec
81 followers · 17 posts · Server infosec.exchange

New post about -C-36 covering a detailed view of the infection of the last campaigns. From to deployment.

lab52.io/blog/apt-c-36-from-nj

#apt #hagga #njrat #limerat

Last updated 2 years ago

Couple of months / threat actor was low-key.
While it is back now, a string in last stage script might explain the absence, ( maybe a heartbreak ?)

Leads to Xworm !

bazaar.abuse.ch/sample/836cd1d

#aggah #hagga #malware #cybersecurity #infosec

Last updated 3 years ago