Just Another Blue Teamer · @LeeArchinal
130 followers · 197 posts · Server ioc.exchange

While most of us celebrate Labor Day let's all try to take a moment to remember those who don't get to spend time with their loved ones today, wherever they may be and whatever they may be doing!

I don't know how this report slid under my radar but the ESET researched team unveil a "Marioesque" themed adversary, ! They are a cyberespionage group that targets foreign embassies in Belarus with the use of their ISP level access and their tools and . Using their (assumed) unique level of access, they compromise their targets by redirecting them to a fake update site which loads JavaScript code then leads to a zip file being downloaded. The team wasn't able to get the zip file, but they were still able to identify some TTPs and abuse, such as creating a malicious scheduled task. I hope you enjoy and Happy Hunting!

#moustachedbouncer #Nightclub #disco #microsoft #lolbins #cybersecurity #itsecurity #infosec #blueteam #threatintel #threathunting #ThreatDetection #happyhunting #readoftheday #laborday

Last updated 1 year ago

Jon Greig · @jgreig
111 followers · 567 posts · Server ioc.exchange
Mr.Trunk · @mrtrunk
6 followers · 12805 posts · Server dromedary.seedoubleyou.me