Tag: Carbon Black

Domain-Based IOC Detection for Carbon Black in Uncoder AI
Domain-Based IOC Detection for Carbon Black in Uncoder AI

How It Works 1. IOC Extraction Uncoder AI scans the threat report (left panel) and identifies malicious network infrastructure associated with: HATVIBE and CHERRYSYSPY loaders Suspicious communication and command-and-control domains like: trust-certificate.net namecheap.com enrollmenttdm.com n247.com mtw.ru Explore Uncoder AI These domains are associated with: Fake certificate lures Python-based loaders Malicious HTA stagers Credential theft via […]

Read More
AI-Generated Carbon Black Detection Rule for DarkCrystal RAT Campaign
AI-Generated Carbon Black Detection Rule for DarkCrystal RAT Campaign

How It Works Uncoder AI processes threat reports like CERT-UA#14045 on DarkCrystal RAT and generates Carbon Black-compatible detection logic. This feature maps observed file hashes, execution patterns, and C2 infrastructure into a rule that’s ready to deploy within Carbon Black’s behavioral telemetry stack. On the left, the threat report details the DarkCrystal campaign, including: Malicious […]

Read More