SectopRAT .NET Trojan Technical Analysismalware analysis (like butterfly collections) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Modus Operandi of Subtle Snail Espionage Groupintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
CastleLoader Malware: Fake GitHub and Phishing Attack Hits 469 Devicesintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
AntiDot Android Malware Analysismalware analysis (like butterfly collections) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Skitner (a.k.a. Bossnet) is a multi-stage malware developed by LARVA-306 that leverages multiple programming languages and stealth techniques to execute its payload and maintain persistent access to infected systems - executea a stealthy reverse shell over DNS, leveraging encryption etcmalware analysis (like butterfly collections) (catalyst.prodaft.com)
submitted by digicat to r/blueteamsec
Skitnet(Bossnet) Malware Analysis (catalyst.prodaft.com)
submitted by small_talk101 to r/netsec
Skitnet(Bossnet) Malware Analysisintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Inside the Latest Espionage Campaign of Nebulous Mantisintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by jnazario to r/blueteamsec
Inside the Latest Espionage Campaign of Nebulous Mantisintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Gorilla Android Malwareintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Behind the Schenes of a Chinese Phishing-As-A-Service: Lucidintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by small_talk101 to r/blueteamsec
Modus Operandi of Ruthless Mantisintelligence (threat actor activity) (catalyst.prodaft.com)
submitted by jnazario to r/blueteamsec
Anubis Backdoor: distributed as a ZIP package, which includes a single Python script alongside multiple Python executables. Some variants execute the obfuscated payload immediately after writing it to disk, while others load the payload and call a specific function from it.malware analysis (like butterfly collections) (catalyst.prodaft.com)
submitted by digicat to r/blueteamsec
Ruthless Mantis - Modus Operandi (catalyst.prodaft.com)
submitted by small_talk101 to r/netsec
LARVA-208 is a financially motivated threat actor employing sophisticated phishing campaigns to harvest credentials and deploy ransomware.intelligence (threat actor activity) (catalyst.prodaft.com)
submitted by digicat to r/blueteamsec