Malware News
12.8K subscribers
1.63K photos
7 videos
130 files
7.78K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
IDA PRO 8.3 finally has the Goomba plugin built-in! De-obfuscate simple MBAs out-of-the-box! @HexRaysSA https://github.com/HexRaysSA/goomba😍
🗣enovella_


🎖@malwr
🔥1
Since using legit drivers to kill processes seems to be a thing 🤷‍♀️

Here's my crappy script to identify potential process killer drivers on LOLDrivers

https://github.com/xalicex/LOLDrivers_finder
🗣AliceCliment


🎖@malwr
Check Point researchers observed a wave of highly targeted espionage attacks in Libya that utilize a new custom modular backdoor. Stealth Soldier malware is an undocumented backdoor that primarily operates surveillance functions. https://research.checkpoint.com/2023/stealth-soldier-backdoor-used-in-targeted-espionage-attacks-in-north-africa/
🗣virusbtn


🎖@malwr
ESET's @matthieu_faou describes new findings relating to crimeware group Asylum Ambuscade. The group targets bank customers & cryptocurrency traders in various regions but also carries out espionage against government entities in Europe & Central Asia. https://www.welivesecurity.com/2023/06/08/asylum-ambuscade-crimeware-or-cyberespionage/
🗣virusbtn


🎖@malwr
"Best online tools for #Telegram investigations"

An article with small list of the most important search engines, directories, online services, and bots for finding any information in Telegram.

https://medium.com/@TheInvestigatorBlog/best-online-tools-for-telegram-investigations-9746b17c90d8

Thanks for tip @osintbear
🗣cyb_detective


🎖@malwr
Forward posts to the other groups


🎖@malwr
4
Malware development trick - part 32. Syscalls - part 1. Simple C++ example. https://cocomelonc.github.io/malware/2023/06/07/syscalls-1.html #Pentesting #Malware #CyberSecurity #Infosec
🗣ptracesecurity


🎖@malwr
🔥1
YARA 4.3.2 has been released. Fixes a bug reported by Huawei that makes YARA crash while scanning arbitrary files with certain hex patterns.
https://github.com/VirusTotal/yara
🗣plusvic


🎖@malwr
Trend Micro researchers present the first of a three-part technical research series taking an in-depth look at the continuing evolution of the highly evasive batch obfuscation engine BatCloak. https://www.trendmicro.com/en_us/research/23/f/analyzing-the-fud-malware-obfuscation-engine-batcloak.html
🗣virusbtn


🎖@malwr
🔥1