Tag: APT

MQsTTang Backdoor Detection: New Custom Malware by Mustang Panda APT Actively Used in the Latest Campaign Against Government Entities   3 min read Latest Threats MQsTTang Backdoor Detection: New Custom Malware by Mustang Panda APT Actively Used in the Latest Campaign Against Government Entities   by Daryna Olyniychuk BlueNoroff Group Activity Detection: Threat Actors Apply Novel Methods to Bypass Windows Mark-of-the-Web (MoTW) Protection 4 min read Latest Threats BlueNoroff Group Activity Detection: Threat Actors Apply Novel Methods to Bypass Windows Mark-of-the-Web (MoTW) Protection by Veronika Telychko What is Ransomware Detection? How to Detect Ransomware 11 min read SIEM & EDR What is Ransomware Detection? How to Detect Ransomware by Karolina Koval MagicWeb Detection: NOBELIUM APT Uses Sophisticated Authentication Bypass 3 min read Latest Threats MagicWeb Detection: NOBELIUM APT Uses Sophisticated Authentication Bypass by Anastasiia Yevdokimova Armageddon APT aka UAC-0010 Uses GammaLoad and GammaSteel Malware in Targeted Cyber-Attacks on Ukraine 3 min read Latest Threats Armageddon APT aka UAC-0010 Uses GammaLoad and GammaSteel Malware in Targeted Cyber-Attacks on Ukraine by Veronika Telychko APT37 Detection: North Korean Hackers Distribute Konni RAT, Target Orgs in Czechia and Poland 2 min read Latest Threats APT37 Detection: North Korean Hackers Distribute Konni RAT, Target Orgs in Czechia and Poland by Anastasiia Yevdokimova PingPull Malware Detection: New Stealthy RAT Used by Gallium APT 3 min read Latest Threats PingPull Malware Detection: New Stealthy RAT Used by Gallium APT by Anastasiia Yevdokimova Evilnum Hacking Group Resurfaces With Spear Phishing Attacks on European Migration Organizations 3 min read Latest Threats Evilnum Hacking Group Resurfaces With Spear Phishing Attacks on European Migration Organizations by Anastasiia Yevdokimova ToddyCat APT Targets Microsoft Exchange Servers to Deploy Samurai Backdoor and Ninja Trojan 3 min read Latest Threats ToddyCat APT Targets Microsoft Exchange Servers to Deploy Samurai Backdoor and Ninja Trojan by Daryna Olyniychuk New Attempts to Exploit Log4Shell in VMware Horizon Systems: CISA Warns of Threat Actors Actively Leveraging CVE-2021-44228 Apache Log4j Vulnerability 4 min read Latest Threats New Attempts to Exploit Log4Shell in VMware Horizon Systems: CISA Warns of Threat Actors Actively Leveraging CVE-2021-44228 Apache Log4j Vulnerability by Veronika Telychko