Manuel Bissey · @mbissey
30 followers · 465 posts · Server cyberplace.social

are as alive as ever, wantonly sweeping up whatever business data might be of use to cybercriminals, including OpenAI / credentials☝️👩‍💻

darkreading.com/application-se

#infostealers #chatgpt

Last updated 1 year ago

Geekmaster 👽:system76: · @Geekmaster
166 followers · 1244 posts · Server ioc.exchange
TropChaud · @IntelScott
213 followers · 39 posts · Server infosec.exchange

Struggling to differentiate & prioritize among the large set of opportunistic and “indiscriminate” threats in the landscape? Our new blog aims to help

Threat profiling generally focuses on identifying & prioritizing (rank-ordering) threats motivated to harm your organization. These include threats with clear targeting intent relative to your org or your industry, often a smaller set that is more straightforward to surface. Then comes the large pool of threats that seem to impact most sectors, maybe in some cases your vertical specifically or others trending in threat intel generally, regardless of explicitly links to your industry yet

With the high volume of recent activity from threats like , , & loader/initial access malware like , , and many others, I’m seeing more awareness that these often broad-based threats should be on many security teams’ radars. But how do you keep from being overwhelmed by what often feels like an endlessly growing list of new threats?

@tidalcyber's latest blog (tidalcyber.com/blog/ransomware) offers several strategies for helping make more sense out of this subset of threats, using major ransomware-as-a-service operations as a representative case study. Our guidance involves (where possible) leaning on metrics to rank-order groups linked to your industry, using technical sources to identify potential spikes in activity and quantifiably justify increased priority levels, and focusing defenses on discrete TTPs that might be common across the wide pool of these threats (summarized for major in the attached table, with data sourced from the Ransomware & Data Extortion mega-matrix available in Tidal’s free Community Edition here: app.tidalcyber.com/share/9a0fd)

These tips are often just a starting point – for more upcoming threat profiling guidance, subscribe to the Tidal blog here tidalcyber.com/blog and follow us on all major social platforms, and we look forward to hearing what other techniques you use to drive focus in the ever-evolving threat landscape

#ransomware #infostealers #qakbot #Gootloader #raas #threatinformeddefense #threatprofile #risk #intelligence #cti

Last updated 1 year ago

ChanPerco · @chanperco
71 followers · 3016 posts · Server mastodon.social

Les «  », cette petite cybercriminalité qui prospère dans l’ombre des rançongiciels.
Leur but est de récupérer toutes les informations intéressantes présentes sur son appareil, de les exfiltrer puis de disparaître lemonde.fr/pixels/article/2023

#infostealers

Last updated 1 year ago

Tidal Cyber · @tidalcyber
15 followers · 18 posts · Server infosec.exchange

As we've said in previous posts and in our 2023 threat landscape webinar, are one of the top threats we're tracking this year. These pieces of malware are often thought of as more of a personal concern due to their association with pirated video games, but they're increasingly targeting enterprises for a bigger and more valuable information haul.

Today we're excited to release our Director of CTI's latest blog, in which he details specific ways you can defend against many of the techniques used by infostealer operators, and shows you how the Tidal Community Edition can help you with these defenses.

Check it out!

hubs.la/Q01zZBvf0

#infostealers #threatintel #ttp #cybersecurity #threatintelligence #threatinformeddefense

Last updated 2 years ago

Faites une ⏸ . Arrêtez quelques instants de penser et grosse 💥. Venez avec moi, on va parler de , d'empoisonnement de ...
Tout ça pour distribuer des . On n'imagine difficilement les ravages qu'ils peuvent faire sur la vie d'une personne. Et encore plus à quelle vitesse.
Mais vous pensez que les entreprises n'ont pas à s'en préoccuper ? Imaginez que l'individu victime soit votre collaborateur... que parmi les données volées, il y ait ses identifiants pour votre , votre passerelle , votre environnement de VDI VMware, votre ferme ... Vous commencez à entrevoir la suite ? Vous la voyez venir la tonitruante avec un gros méchant ?
lemagit.fr/actualites/25252930

#ransomware #cyberattaque #malvertising #seo #infostealers #vpnssl #citrix #rds

Last updated 2 years ago

Online la seconda puntata del 2023 di !

Si parla degli impatti di e della sua vulnerabilità, poi di che stanno agitando le loro campagne malevole anche in Italia ⤵️

buttondown.email/ninasec/archi

#NINAsec #jsonwebtoken #infostealers

Last updated 2 years ago

Tidal Cyber · @tidalcyber
14 followers · 14 posts · Server infosec.exchange

We're tracking infostealers as one of the biggest threats to enterprises this year. While these have typically been associated with consumer-level attacks, they can have big impacts to businesses. In our latest blog, our Director of CTI, Scott Small, breaks down the infostealer landscape and TTPs commonly used by actors using these pieces of malware. Check it out!

hubs.la/Q01xSjSH0

#threatintel #cyberthreatintelligence #cybersecurity #infostealers

Last updated 2 years ago

da_667 · @da_667
2310 followers · 757 posts · Server infosec.exchange

BTW, in case you didn't know, I fucking HATE


Sure, the lures are basic, as is the functionality, but they smash and grab every credential they can, exfil it immediately, then self-destruct. Unless you catch it on execution, or over the wire, congrats, all your creds probably got shipped to an access broker, and you never noticed, because these things almost never establish persistence.

#infostealers #winstealers

Last updated 2 years ago