Title |
Published |
Tags |
Description |
Number of indicators |
Nitrogen Campaign Drops Sliver and Ends With BlackCat Ransomware |
Oct. 1, 2024, 10:05 a.m. |
|
A BlackCat ransomware intrusion began with a Nitrogen malware campaign impersonating Advanced IP Scanner. The attackers used Sliv… |
45 |
Threat Actors’ Toolkit: Leveraging Sliver, PoshC2 & Batch Scripts |
Aug. 12, 2024, 11:45 a.m. |
|
An investigation by The DFIR report revealed a collection of batch scripts designed for defense evasion and executing command-and… |
32 |
Array of malware used to gather intelligence for North Korea |
July 29, 2024, 10:21 a.m. |
|
Microsoft Threat Intelligence analyzes the activities of the North Korean threat actor Onyx Sleet, which conducts cyber espionage… |
24 |
Supposed Grasshopper: operators impersonate Israeli government and private companies to deploy open-source malware |
June 28, 2024, 2:58 p.m. |
|
A long-running campaign was identified involving malicious actors impersonating Israeli entities and private companies. The opera… |
18 |
Ongoing Malvertising Campaign leads to Ransomware |
May 15, 2024, 3:14 p.m. |
|
Rapid7 detected an ongoing malware distribution campaign involving trojanized installers of WinSCP and PuTTY, delivered via malic… |
78 |