Unit42 : "A cyberespionage group based in Asia". Doesn't name the country. But delivers map that kind of gives it away, we would say. Anyways, the good people of @RecordedFuture have more: https://t.co/q4FGcufLTx
@TLP_R3D You are correct though - installer you reference is actually a new setup file we didnโt yet see, so thanks for the share! It does drop a KeePass exe we did reference though ๐
An indictment was unsealed yesterday charging four foreign nationals with operating botnet services that targeted thousands of wireless internet routers. The conspirators allegedly amassed more than $46 million from selling access to infected routers. https://t.co/FlubzNXY3e
@CISAgov is urging all to increase their cyber vigilance during the time period around the one-year anniversary of Russiaโs full-scale invasion of Ukraine. https://t.co/TpPoVoGTx4
CISA has created public cybersecurity resources, including #ShieldsUp @ https://t.co/WC7JVPP6F8.
Eduard Benderskiy, a former high-ranking official within the Russian intelligence services, was named and sanctioned by Western law enforcement agencies on Tuesday in a paper describing him as a key enabler and protector for the Evil Corp cybercrime group. https://t.co/TEbP90QF7D
Too many corporate CTI shops staffed by former Mil / Govies overindex on nation-state APT. Suspect it's in part because they are looking at Capability more than Intent, but also because it's what they used to track and it's cool. Ransomware actors FAR greater threat to most.