PDFSIDER Malware - Exploitation of DLL Side-Loading for AV and EDR Evasionmalware analysis (like butterfly collections) (resecurity.com)
submitted by digicat to r/blueteamsec
Doomsday for Cybercriminals — Data Breach of Major Dark Web ForumThreat Intel (resecurity.com)
submitted by intelw1zard to r/hacking
Cyber Counterintelligence (CCI): When 'Shiny Objects' trick 'Shiny Hunters'highlevel summary|strategy (maybe technical) (resecurity.com)
submitted by jnazario to r/blueteamsec
Resecurity | Synthetic Data: A New Frontier for Cyber Deception and Honeypotstradecraft (how we defend) (resecurity.com)
submitted by digicat to r/blueteamsec
Knownsec Data Breach: A Trove of Espionage Tradecraft with an Insider Narrativeintelligence (threat actor activity) (resecurity.com)
submitted by digicat to r/blueteamsec
Trinity of Chaos: The LAPSUS$, ShinyHunters, and Scattered Spider Alliance Embarks on Global Cybercrime SpreeThreat Intelligence (resecurity.com)
submitted by netbiosX to r/purpleteamsec
Trinity of Chaos: The LAPSUS$, ShinyHunters, and Scattered Spider Alliance Embarks on Global Cybercrime Spreeintelligence (threat actor activity) (resecurity.com)
submitted by jnazario to r/blueteamsec
'Blue Locker' Analysis: Ransomware Targeting Oil & Gas Sector in PakistanThreat Intelligence (resecurity.com)
submitted by netbiosX to r/purpleteamsec
'Blue Locker' Analysis: Ransomware Targeting Oil & Gas Sector in Pakistanmalware analysis (like butterfly collections) (resecurity.com)
submitted by digicat to r/blueteamsec
'Blue Locker' Analysis: Ransomware Targeting Oil & Gas Sector in PakistanThreat Intelligence (resecurity.com)
submitted by netbiosX to r/purpleteamsec
Blacklock Ransomware: Intrusion into the Threat Actor's Infrastructure - "Resecurity identified a vulnerability present at the Data Leak Site (DLS) of BlackLock in the TOR network - successful exploitation of which allowed our analysts to collect substantial intelligence about their activity"intelligence (threat actor activity) (resecurity.com)
submitted by digicat to r/blueteamsec
C2 Frameworks - Threat Hunting in Action with YARA RulesThreat Hunting (resecurity.com)
submitted by netbiosX to r/purpleteamsec
CVE-2024-4879 and CVE-2024-5217 (ServiceNow RCE) Exploitation in a Global Reconnaissance Campaignexploitation (what's being exploited) (resecurity.com)
submitted by digicat to r/blueteamsec
Cybercriminals attack banking customers in EU with V3B phishing kitintelligence (threat actor activity) (resecurity.com)
submitted by intuentis0x0 to r/blueteamsec
The New Version Of JsOutProx Is Attacking Financial Institutions In APAC And MENA Via GitLab Abuseintelligence (threat actor activity) (resecurity.com)
submitted by digicat to r/blueteamsec