Tag : remote access

8 attack reports | 0 vulnerabilities

Attack Reports

Title Published Tags Description Number of indicators
The trojan horse that wanted to fly Sept. 2, 2024, 4:18 p.m. Rocinante is a new strain of mobile malware originating from Brazil, capable of keylogging, stealing PII through phishing, and pe… 4
Threat actor targeting UK banks in ongoing AnyDesk social engineering campaign Aug. 9, 2024, 11:45 a.m. Threat analysts are tracking an ongoing campaign that employs fake websites and social engineering tactics to distribute a malici… 50
SharpRhino – New Hunters International RAT Aug. 6, 2024, 11:18 a.m. Quorum Cyber's Incident Response team discovered a novel malware, SharpRhino, used by the threat actor Hunters International as a… 6
Strikes with commercial malware against organizations in Kazakhstan Aug. 1, 2024, 8:56 a.m. BI.ZONE experts have been monitoring the activities of a threat group called Bloody Wolf since late 2023. This group targets orga… 10
Analysis of Attack Case Installing VPN on Korean ERP Server June 17, 2024, 11:19 a.m. This analysis examines an attack where a threat actor compromised a Korean company's ERP server, initially accessing it through a… 11
RAT Distributed as UUEncoding (UUE) File June 11, 2024, 10:11 a.m. This intelligence report describes a malicious operation where the Remcos Remote Access Trojan (RAT) is being disseminated throug… 3
Threat actors misusing Quick Assist in social engineering attacks leading to ransomware May 16, 2024, 9:27 a.m. The report describes a recent campaign by the threat actor Storm-1811, a financially motivated cybercriminal group known for depl… 12
Dissecting REMCOS RAT: An in-depth analysis of a widespread 2024 malware, Part Four May 9, 2024, 3:14 p.m. This comprehensive analysis provides a thorough examination of the REMCOS Remote Access Trojan (RAT), a prominent malware threat … 34