SECWATCH is a Dutch security service provider, specialized in red teaming and threat hunting. We look at cyberthreats from the perspective of a hacker.
Everyone in #infosec is working hard to defend for #log4shell#log4j IOC’s, TTP’s etc., it’s all coming together with #Dutch infosec company’s joining forces through @ncsc_nl and @CyberveiligNL at https://t.co/lgXaA3h2mv ; follow for more intel!
@floorter@DaveMaasland Dat proberen ze wel; maar dit is een mail ding als aanval voor een dropper/stager/c2 enzo… de aanval zelf (RE: threat-xyz) is wel interessant
Er gaan een hoop spookverhalen rond omtrent de situatie bij IKEA.
- Er is weinig bekend
- Het is niet direct vergelijkbaar met VDL, Mediamarkt
- Het feit dat er legitieme mail accounts worden gebruikt om Malware is interessant
- Het is geen Ransomware
https://t.co/NSdmDSyVOQ
1/8 Here's my quick analysis on the new Print Spooler vulnerability (CVE-2021-36970)
Few details are currently available, but Microsoft states that this is a spoofing vulnerability with a CVSS score of 8.8.
https://t.co/1tBouYThMC