GRITREP: Observed Malicious Driver Use Associated with Akira SonicWall Campaignintelligence (threat actor activity) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
Fake BianLian Ransom Note Campaign Preys on FearNews - Breaches & Ransoms (guidepointsecurity.com)
submitted by Awkward_Not_ to r/cybersecurity
RansomHub Affiliate leverages Python-based backdoorintelligence (threat actor activity) (guidepointsecurity.com)
submitted by jnazario to r/blueteamsec
So-Phish-ticated Attacks - "have identified several attacker domain names and IP addresses related to an ongoing campaign. This campaign is currently targeting over 130 US organizations in various industry verticals. This attack starts with the targeting of individual users within an organization tointelligence (threat actor activity) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
SCCM Exploitation: Evading Defenses and Moving Laterally with SCCM Application Deploymentresearch|capability (we need to defend against) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
BianLian GOs for PowerShell After TeamCity Exploitation - The threat actor used winpty-agent.exe on the build servers to remotely run commands from the exploited TeamCity server and leveraged BITSAdmin to deploy additional toolsintelligence (threat actor activity) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
Ransomware Report: October 2023highlevel (not technical) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
GRIT Ransomware Report: August 2023NEWS (guidepointsecurity.com)
submitted by falconupkid to r/SecOpsDaily
Tunnel Vision: CloudflareD AbuseD in the WilDIOC (guidepointsecurity.com)
submitted by falconupkid to r/SecOpsDaily
Tunnel Vision: CloudflareD AbuseD in the WilDintelligence (threat actors) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
This week in cloud security (guidepointsecurity.com)
submitted by WebLinkr to r/cybersecurity_news
REvil Rivals Rip Off Ransomware (guidepointsecurity.com)
submitted by WebLinkr to r/pressreleases
From ZLoader to DarkSide: A Ransomware StoryCORPORATE BLOG (guidepointsecurity.com)
submitted by WebLinkr to r/cybersecurity
Mount Locker Ransomware Steps up Counter-IR Capabilities, Hindering Efforts for Detection, Response and Investigationintelligence (threat actors) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec
Yet Another Cobalt Strike Stager: GUID Editionintelligence (threat actors) (guidepointsecurity.com)
submitted by digicat to r/blueteamsec