Category: Threat Intel Reports


  • Cobalt Strike Beacon Detected – 88[.]214[.]27[.]89:443

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 88-[.-]214-[.-]27-[.-]89:443=============================================================[September 1, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Wireshark 4.4: Converting Display Filters to BPF Capture Filters, (Sun, Sep 1st)

    [Wireshark 4.4: Converting Display Filters to BPF Capture Filters](/forums/diary/Wireshark+44+Converting+Display+Filters+to+BPF+Capture+Filters/31224/)=======================================================================================================================================================* * [](http://www.facebook.com/sharer.php?u=https%3A%2F%2Fisc.sans.edu%2Fforums%2Fdiary%2F31224 ‘Share on Facebook’)* [](http://twitter.com/share?text=Wireshark%204.4%3A%20Converting%20Display%20Filters%20to%20BPF%20Capture%20Filters&url=https%3A%2F%2Fisc.sans.edu%2Fforums%2Fdiary%2F31224&via=SANS_ISC ‘Share on Twitter’) **Published** :…


  • Docker-OSX image used for security research hit by Apple DMCA takedown

    ![Apple](https://www.bleepstatic.com/content/hl-images/2023/09/11/apple_triangle.jpg)The popular Docker-OSX project has been removed from Docker Hub after Apple filed a DMCA (Digital Millennium Copyright Act) takedown…


  • GitHub comments abused to push password stealing malware masked as fixes

    ![GitHub](https://www.bleepstatic.com/content/hl-images/2024/06/10/GitHub.jpg)GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments.The campaign was…


  • Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems

    ![Cicada](https://www.bleepstatic.com/content/hl-images/2024/08/30/cicada.jpg) *Image: Midjourney*A new ransomware-as-a-service (RaaS) operation named Cicada3301 has already listed 19 victims on its extortion portal, as it…


  • An air transport security system flaw allowed to bypass airport security screenings

    A vulnerability in an air transport security system allowed unauthorized individuals to bypass airport security screenings.—————————————————————————————————————————The Known Crewmember (KCM) and…


  • Cobalt Strike Beacon Detected – 69[.]46[.]15[.]185:4433

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 69-[.-]46-[.-]15-[.-]185:4433==============================================================[September 1, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Cobalt Strike Beacon Detected – 120[.]46[.]212[.]33:9999

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 120-[.-]46-[.-]212-[.-]33:9999===============================================================[September 1, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Cobalt Strike Beacon Detected – 223[.]26[.]61[.]66:8080

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 223-[.-]26-[.-]61-[.-]66:8080==============================================================[September 1, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Secure Our World: Cybersecurity Awareness Month 2024

    We are one month away from the start of the annual Cybersecurity Awareness Month in October. Here are resources, themes,…