Malware News
13K subscribers
1.63K photos
7 videos
130 files
7.78K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
TinyTurla Next Generation - Turla APT spies on Polish NGOs

This new backdoor we’re calling “TinyTurla-NG” (TTNG) is similar to Turla’s previously disclosed implant, TinyTurla, in coding style and functionality implementation.

https://blog.talosintelligence.com/tinyturla-next-generation/


🎖@malwr
Navigating 2024's Geopolitical Fault Lines

Explore key 2024 geopolitical risks: Middle East volatility, Russia-Ukraine tensions, and China-Taiwan relations, with insights on global conflict flashpoints.

https://www.recordedfuture.com/navigating-2024s-geopolitical-fault-lines


🎖@malwr
👍1
Russia-Aligned TAG-70 Targets European Government and Military Mail Servers in New Espionage Campaign

Insikt Group has observed TAG-70 leveraging cross-site scripting (XSS) vulnerabilities against Roundcube webmail servers in Europe, targeting government, military, and national infrastructure.

https://www.recordedfuture.com/russia-aligned-tag-70-targets-european-government-and-military-mail


🎖@malwr
This media is not supported in your browser
VIEW IN TELEGRAM
3
WinRAR RCE Vulnerability Spotlight: APT29’s Zero-Day Tactics

In early September 2023, APT29, a group affiliated with Russia's SVR, targeted multiple embassy offices using a WinRAR vulnerability. Their cyberespionage aims hinted at geopolitical motives. Exploiting CVE-2023-38831, the attackers executed a phishing campaign using a deceitful PDF, demonstrating the critical role of cybersecurity awareness and regular software updates in preventing such attacks.Continue reading

https://securitycafe.ro/2024/02/19/winrar-rce-vulnerability-spotlight-apt29s-zero-day-tactics/


🎖@malwr
🗿3
🚨 For advertising in the channel, contact @SirMalware
😁1
Malware News pinned «🚨 For advertising in the channel, contact @SirMalware»
Russia Seeks to Exploit Western "War Fatigue" to Win in Ukraine

Russia aims to influence 2024 Western elections, exploiting "war fatigue" over Ukraine aid to sway opinions and outcomes. Learn how Moscow leverages data and strategies to shape global politics.

https://www.recordedfuture.com/russia-seeks-exploit-western-war-fatigue-win-ukraine


🎖@malwr
Blue Team toolkit: 6 open-source tools to assess and enhance corporate defenses

Here’s how the blue team wards off red teamers and a few open-source tools it may leverage to identify chinks in the corporate armor

https://www.welivesecurity.com/en/business-security/blue-team-toolkit-6-open-source-tools-corporate-defenses/


🎖@malwr
Predator Spyware Operators Rebuild Multi-Tier Infrastructure to Target Mobile Devices

Following a string of major public disclosures, Insikt Group has identified new infrastructure associated with operators of the mercenary mobile spyware Predator.

https://www.recordedfuture.com/predator-spyware-operators-rebuild-multi-tier-infrastructure-target-mobile-devices


🎖@malwr
Multistage RA World Ransomware Uses Anti-AV Tactics, Exploits GPO

The Trend Micro threat hunting team came across an RA World attack involving multistage components designed to ensure maximum impact.

https://www.trendmicro.com/en_us/research/24/c/multistage-ra-world-ransomware.html


🎖@malwr
GhostSec’s joint ransomware operation and evolution of their arsenal

Cisco Talos observed a surge in GhostSec, a hacking group’s malicious activities since this past year. GhostSec has evolved with a new GhostLocker 2.0 ransomware, a Golang variant of the GhostLocker ransomware.

https://blog.talosintelligence.com/ghostsec-ghostlocker2-ransomware/


🎖@malwr
1
Unveiling Earth Kapre aka RedCurl’s Cyberespionage Tactics With Trend Micro MDR, Threat Intelligence

This blog entry will examine Trend Micro MDR team's investigation that successfully uncovered the intrusion sets employed by Earth Kapre in a recent incident, as well as how the team leveraged threat intelligence to attribute the extracted evidence to the cyberespionage threat group.

https://www.trendmicro.com/en_us/research/24/c/unveiling-earth-kapre-aka-redcurls-cyberespionage-tactics-with-t.html


🎖@malwr