Summary
Analysts from the Malware Hunter Team have discovered a new tactic being employed by threat actors: Windows Safe Mode Encryption. Bleeping Computer has published an article on the details of the boot mode ransomware encryption technique.
Threat Type
Vulnerability, Ransomware
Overview
REvil has added the ability to encrypt files even in Windows Safe Mode. This mode allows users to troubleshoot the operating system for errors. Safe Mode prevents startup menu items from starting and only allows the bar
Three years of reported security incidents shows continued growth in denial-of-service and password login attacks such as brute force and credential stuffing.
Three years of reported security incidents shows continued growth in denial-of-service and password login attacks such as brute force and credential stuffing.
Three years of reported security incidents shows continued growth in denial-of-service and password login attacks such as brute force and credential stuffing.
Summary
IBM X-Force Threat Intelligence has published a report on ITG14 and their shift from Point-of-Sale (POS) systems to ransomware and the emersion of new TTPs for the group.
Threat Type
Malware, Ransomware,Phishing, VBS, PowerShell, Backdoor
Overview
IBM X-Force Threat Intelligence has published a report on ITG14, which shares overlap with FIN7 and CARBON SPIDER, and its latest shift from Point-of-Sale (POS) systems to ransomware with new TTPs. X-Force analysts have concluded the latest campaign is aff
Summary
IBM X-Force Intelligence has published a report updating the latest activities from Hive0097, known as Cloud Atlas.
Threat Type
Threat Group
Overview
IBM X-Force Threat Intelligence has published a report on the latest activities from Hive0097, known as Cloud Atlas. Analysis has revealed several new malicious documents at the beginning of 2021. These documents are consistent with Hive0097's TTPs of focusing on former Soviet-bloc nations in Eastern Europe and Central Asia. Previous findings indicate