Just Another Blue Teamer · @LeeArchinal
71 followers · 123 posts · Server ioc.exchange

everyone! This week I will wrap up with a from ThreatMon and their coverage of the . They provide technical analysis of the and describes some of its behaviors! Enjoy and Happy Hunting!

Zaraza Bot: The New Russian Credential Stealer
threatmon.io/wp-content/upload

Notable MITRE ATT&CK TTPs:
TA0009 - Collection:
T1005 - Data from Local System
T1113 - Screen Capture
T1119 - Automated Collection
T1074.001 - Data Staged: Local Data Staging

TA0011 - Command And Control
T1071 - Application layer Protocol
T1537 - Encrypted Channel

#happyfriday #readoftheday #zarazabot #credentialstealer #cybersecurity #itsecurity #infosec #blueteam #threatintel #threathunting #ThreatDetection #happyhunting

Last updated 1 year ago