Month: September 2024
-
How Ransomhub Ransomware Uses EDRKillShifter to Disable EDR and Antivirus Protections
The RansomHub ransomware, attributed to a group tracked as Water Bakunawa, employs sophisticated anti-EDR techniques to evade security solutions. Its…
-
Necro Trojan infiltrates Google Play and Spotify and WhatsApp mods
A new version of the Necro Trojan has infected various popular applications, including game mods and apps on Google Play,…
-
Inside SnipBot: The Latest RomCom Malware Variant
A novel version of the RomCom malware family called SnipBot has been discovered, revealing post-infection activity from attackers on victim…
-
Inside SnipBot: The Latest RomCom Malware Variant
A novel version of the RomCom malware family called SnipBot has been discovered, revealing post-infection activity from attackers on victim…
-
An Offer You Can Refuse: Backdoor Deployment Using Trojanized PDF Reader
UNC2970, a suspected North Korean cyber espionage group, targeted critical infrastructure sectors using job-themed phishing lures. The group employed a…
-
Binary Managed Object File (BMOF) Distributing XMRig CoinMiner
This analysis explores the use of Binary Managed Object Files (BMOFs) in distributing XMRig CoinMiner. BMOFs, compiled versions of Managed…
-
The Nanshou Campaign Hackers Arsenal Grows Stronger
This comprehensive analysis details a sophisticated cyber campaign targeting over 50,000 Windows servers worldwide, primarily in the healthcare, telecommunications, media,…
-
The Nanshou Campaign Hackers Arsenal Grows Stronger
This comprehensive analysis details a sophisticated cyber campaign targeting over 50,000 Windows servers worldwide, primarily in the healthcare, telecommunications, media,…
-
Cobalt Strike Beacon Detected – 124[.]221[.]112[.]96:80
* [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 124-[.-]221-[.-]112-[.-]96:80==============================================================[September 15, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…
-
Cobalt Strike Beacon Detected – 49[.]235[.]122[.]75:80
* [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 49-[.-]235-[.-]122-[.-]75:80=============================================================[September 15, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…