Month: July 2019

TA505 Uses FlowerPippi and Gelup Malware in Summer Campaigns

Delaware, USA ā€“ July 5, 2019 ā€“ For some, summer is the sea and the beach, and for TA505 this is the season of active spam campaigns and the use of new malware. In mid-June, countries in the Middle East were flooded by spam with malicious documents and archives spreading the FlawedAmmyy RAT. It is […]

Read More
Godlua Malware Abuses DNS over HTTPS Protocol

Delaware, USA ā€“ July 4, 2019 ā€“ The DNS over HTTPS protocol designed to protect DNS queries from being intercepted by adversaries, now helps the newly discovered Godlua malware avoid detection by traffic monitoring solutions. The malware was discovered by Network Security Research Lab of Qihoo 360, who published an analysis of the finding earlier […]

Read More
Enjoy the Silence: $3M+ operation in Bangladesh

Delaware, USA ā€“ July 3, 2019 ā€“ Silence APT attacked at least three banks in Bangladesh; Dutch Bangla Bank Limited suffered the most, from which the attackers stole about $3 million. Other banks, Prime Bank and NCC Bank, claim that they detected a cyber attack in time and avoided financial losses, but The Daily Star […]

Read More
OceanLotus APT Enlarges the Arsenal With Ratsnif Malware

Delaware, USA ā€“ July 2, 2019 ā€“ Threat actor developed Ratsnif remote access trojan in 2016 and used it in cyber espionage campaigns for almost three years. Cylance cybersecurity experts analyzed 4 samples of malware, 3 of which were compiled in August-September 2016 and almost immediately began to be used in attacks. The last Ratsnif […]

Read More
Spelevo Exploit Kit Spreads IcedID and Dridex Trojans

Delaware, USA ā€“ July 1, 2019 ā€“ Appeared a few months ago Spelevo exploit kit was seen spreading banking Trojans via a compromised business-to-business contact website. The first mention of this exploit kit appeared in early March, and since then its creators have slightly tuned URL structure and obfuscation to cause less suspicion. Researchers from […]

Read More