💡Discover the latest insights on #BulletproofHosting (BPH) services in Russian cybercrime forums XSS & Exploit by OWN-CERT.
📖 We delve into the diversity of these services, analyze cybercriminal opinions, and profile two providers: "Alpha" (professional business) and "Beta" (run by friends). https://t.co/c8TOePIhz6
#Cybersecurity #Cybercrime #Infosec
#ThreatIntelligence
⚫ Mort de l'écrivaine Maryse Condé à 90 ans : retour sur sa vie sans fards
👉 Elle a rendu son dernier souffle dans la nuit de lundi 1er au mardi 2 avril. La 1ère revient sur la vie de l’écrivaine guadeloupéenne la plus célèbre de sa génération
📱💻 https://t.co/r1j9QZDvBz
🤯 The level of sophistication of the XZ attack is very impressive! I tried to make sense of the analysis in a single page (which was quite complicated)!
I hope it helps to make sense of the information out there. Please treat the information "as is" while the analysis progresses! 🧐 #infosec #xz
🧵#ThreatIntelligence#CTI#MustangPanda
OWN-CERT has detected a new malicious sample probably linked to Mustang Panda, named "Talking_Points_for_China.zip" (a16a40d0182a87fc6219693ac664286738329222983bd9e70b455f198e124ba2).
« La menace existentielle pour la France reste la désinformation », entretien avec l’ancien chef de la cyberdéfense militaire
➡️ https://t.co/qB4z4wZART
🧵#Forensic#Rhysida#Decryptor#Thread
A research paper "A Method for Decrypting Data Infected with Rhysida Ransomware " was published last week about flaw inside the ransomware Rhysida encryptor allowing to create a Windows decryption tool to recover files.
🧵#Forensic#Thread
Last week, #Gitlab released a security update, 16.7.2, 16.6.4, 16.5.6, for Community and Enterprise edition to fix multiple #vulnerabilities. CVE-2023-7028, allows an account takeover by using the reset password feature w/o any interaction of the victim.
🚨9 OCT Israel-Palestine #cybertracker 🚨
Current visible cyber landscape. A large group targeting #Israel - almost all these groups have been doing it for years. Current baseline , but will evolve.
For awareness - report to follow
#cybersecurity#infosec#IsraelPalestineWar
#ESETresearch uncovered a #Lazarus attack against an aerospace company in 🇪🇸, deploying several tools, most notably a publicly undocumented and sophisticated RAT we named LightlessCan. The attack is part of Operation DreamJob. @pkalnai https://t.co/VK9nGEn2Gp 1/6
ANSSI/CERT-FR published on the #FIN12 intrusion set, following a university hospital extortion attempt (successfully prevented) in March 2023 https://t.co/qhRA8UnCwJ (French, PDF) #cybercrime
Intrinsec CTI's team is investigating an ongoing 📷#Bumblebee campaign spreading via Html smuggling downloading RAR archive with European Central Bank PDF lure and folder containing Bumblebee EXE payload.
Very interesting project for incident response investigation. It's a compilation of questions an investigator might pose during an incident! There are also some examples scenarios🧐 #DFIR#infosec
👉https://t.co/ExGnG49fkD
We just published new research on an adversary conducting several campaigns against government entities, military organizations and civilian users in #Ukraine and #Poland. These campaigns primarily start with #spam emails and malicious Office attachments https://t.co/zlfMRpNmtj
As @Mandiant digs into ties btwn Russian disruptive and "hacktivist" actors conducting operations in Ukraine, we've seen technical and strategic patterns emerge. We outline these patterns during wartime in the GRU Disruptive Playbook. https://t.co/5aX8J6Snze