[1/4] Joined by @vmptrst (@PwC) and @MsftSecIntel, we release attribution information on the Sandman #APT, first revealed at @labscon_io '23.
Link ๐
https://t.co/qkdKvBM5pr
@armitagehacker If you're looking to spice up the video:
I work at a ๐ฅ๐๐๐๐ถ๐ฎ๐ป ๐๐ผ๐๐ฒ๐ฟ๐ป๐บ๐ฒ๐ป๐ ๐๐ด๐ฒ๐ป๐ฐ๐, we use Cobalt Strike to ๐๐๐ฎ๐ ๐ถ๐ป ๐๐ผ๐๐ฐ๐ต ๐๐ถ๐๐ต ๐ณ๐ฟ๐ถ๐ฒ๐ป๐ฑ๐ ๐ฎ๐ฟ๐ผ๐๐ป๐ฑ ๐๐ต๐ฒ ๐ฒ๐น๐ฒ๐ฐ๐๐ถ๐ผ๐ป๐.
We found the full CARBANAK source code & previously unseen plugins.
Our #FLARE team spent 500 hours analyzing the 100,000+ lines of code.
@mykill & @jtbennettjr just dropped day 1 of their 4-part blog series: https://t.co/0DULpYoDzq
Source code linked in blog. #CarbanakWeek ๐ฆ๐ณ
Our AI cyberstations reports an increased chance for a grade 1 CYBERSTORM to hit the UK, sweeping in from the eastern parts of cyberspace.
https://t.co/oUS4TCf8Yn