SentinelLabs · @SentinelLabs
289 followers · 24 posts · Server infosec.exchange

👉 New on ! .NET malware loader, dubbed MalVirt, is being distributed through malvertising are using obfuscated virtualization for anti-analysis and evasion in an ongoing campaign. By @milenkowski and @hegel

sentinelone.com/labs/malvirt-n

#sentinellabs

Last updated 2 years ago

SentinelLabs · @SentinelLabs
265 followers · 20 posts · Server infosec.exchange

🇨🇳 New on : Cluster of attacks in East Asia, DragonSpark uses open-source tool & malware evading detection through source code interpretation. By
@milenkowski 👇​

sentinelone.com/labs/dragonspa

#sentinellabs #sparkrat #golang

Last updated 2 years ago

SentinelLabs · @SentinelLabs
265 followers · 20 posts · Server infosec.exchange

🔥 New on ! (16) group carries attacks on 🇺🇦 Ukraine, organizations, & other government orgs.

@LabsSentinel has identified channels, a payment program, & a toolkit on . By @hegel & @milenkowski 👇​

s1.ai/noname0

#sentinellabs #noname057 #ddos #nato #telegram #github

Last updated 2 years ago

jreisdorffer · @jreisdorffer
50 followers · 4 posts · Server infosec.exchange
jreisdorffer · @jreisdorffer
50 followers · 4 posts · Server infosec.exchange
jreisdorffer · @jreisdorffer
50 followers · 4 posts · Server infosec.exchange

Collaborative research done by DFIR, , S1 Research & Development and our friends at @Mandiant: sentinelone.com/labs/driving-t…

#vigilance #sentinellabs #poortry #stonestop

Last updated 2 years ago

Christoffer S. · @cstromblad
292 followers · 438 posts · Server ioc.exchange

BlackBasta ransomware group have been linked to FIN7 (Carbanak) according to Sentinel Labs. Apparently the connection was made through some specific EDR evasion tooling, some common TTPs and IPs used by the groups.

BlackBasta is believed to be a reincarnate of the Conti group.

sentinelone.com/labs/black-bas

#threatintelligence #CTI #blackbasta #ransomware #sentinellabs

Last updated 2 years ago

Tarnkappe.info · @tarnkappeinfo
1530 followers · 3788 posts · Server social.tchncs.de
ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online