Malware News
12.8K subscribers
1.63K photos
7 videos
130 files
7.78K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
Ghidra 10.3.1 released!
πŸ—£ryanmkurtz

Fun fact, if you use Windows 10's built-in LZX compression, you can reduce the program size down from 981MB to 371MB. It's absurd.
πŸ‘€Dwedit


πŸŽ–@malwr
Google Ads: An effective phishing delivery mechanism for over a decade.
πŸ—£Seaerkin2

They got me the other day through sponsored search results. Fake Amazon game link. At least I had 2fa on the account. Was an annoying hour or so while the scammers kept hammering the account.
πŸ‘€routerg0d

Dang. Glad I use an ad blocker routinely now. :O
πŸ‘€alvarkresh

I’ve seen drive by malware attacks served up by ad networks more than once.
πŸ‘€vabello


πŸŽ–@malwr
Team Cymru's S2 Research Team present a short update report providing insight into the operation of Vidar, demonstrating the evolution of its management infrastructure and evidence of steps taken by the threat actors to potentially cover their tracks. https://www.team-cymru.com/post/darth-vidar-the-aesir-strike-back
πŸ—£virusbtn


πŸŽ–@malwr
Excellent blog post on reverse engineering and pwning a Google Home Mini smart speaker.
A must read for anyone interested in embedded device security and vulnerability research.

https://downrightnifty.me/blog/2022/12/26/hacking-google-home.html

#iot #embedded #infosec #cybersecurity
πŸ—£0xor0ne


πŸŽ–@malwr
Cado Security researchers look into an attack pattern that could be attributed to the threat actor Diicot (formerly β€œMexals”), targeting SSH servers exposed to the internet with password authentication enabled. https://www.cadosecurity.com/tracking-diicot-an-emerging-romanian-threat-actor/
πŸ—£virusbtn


πŸŽ–@malwr
AhnLab ASEC researchers analyse some cases of the document files used by Kimsuky during May to distribute malicious code. Malicious CHM files were used, with various topics including coins, taxation & contracts. https://asec.ahnlab.com/ko/53426/
πŸ—£virusbtn


πŸŽ–@malwr
Android App Reverse Engineering 101

https://www.ragingrock.com/AndroidAppRE/

#CyberSecurity #malware
πŸ—£0xAsm0d3us


πŸŽ–@malwr
eSentire researchers present a report on Resident, a malicious campaign targeting manufacturing, commercial & healthcare organizations. The Resident campaign is linked to Asylum Ambuscade/TA866. https://www.esentire.com/blog/esentire-threat-intelligence-malware-analysis-resident-campaign
πŸ—£virusbtn


πŸŽ–@malwr