๐New Writeupโ๏ธ
โโโโโโโโโโโโโโโ
๐Date: Mon, 11 Sep 2023 09:56:30 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: RedCurl.Downloader : String Decryption
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/bf086ebdd0fe
โโโโโโโโโโโโโโโ
Tags: #idapro #cybersecurity #reverse_engineering #redcurl #malware_analysis
โโโโโโโโโโโโโโโ
๐Date: Mon, 11 Sep 2023 09:56:30 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: RedCurl.Downloader : String Decryption
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/bf086ebdd0fe
โโโโโโโโโโโโโโโ
Tags: #idapro #cybersecurity #reverse_engineering #redcurl #malware_analysis
Medium
RedCurl.Downloader : String Decryption
RedCurl Malware: A Corporate Espionage Cyber Threat
โคท Title: RedCurl APT Group: Cyber Espionage with Living-Off-the-Land Techniques
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: do son
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Mon, 13 Jan 2025 01:37:36 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cyber Security #Malware #7zip #Earth Kapre #Living_off_the_Land Binaries #LOLBins #powershell #Python #Red Wolf #RedCurl #RedCurl APT group #RedLoader
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: do son
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Mon, 13 Jan 2025 01:37:36 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cyber Security #Malware #7zip #Earth Kapre #Living_off_the_Land Binaries #LOLBins #powershell #Python #Red Wolf #RedCurl #RedCurl APT group #RedLoader
Daily CyberSecurity
RedCurl APT Group: Cyber Espionage with Living-Off-the-Land Techniques
Discover the latest cyber threat: RedCurl APT group. Learn about their sophisticated techniques and targeted cyber espionage campaigns.
โคท Title: Stealth Attack: EarthKapre Leverages Cloud and DLL Sideloading for Data Exfiltration
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: do son
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Tue, 18 Feb 2025 02:03:10 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cyber Security #Malware #EarthKapre #EarthKapre APT #RedCurl APT
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: do son
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Tue, 18 Feb 2025 02:03:10 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cyber Security #Malware #EarthKapre #EarthKapre APT #RedCurl APT
Daily CyberSecurity
Stealth Attack: EarthKapre Leverages Cloud and DLL Sideloading for Data Exfiltration
Uncover the EarthKapre cyber espionage campaign targeting organizations with stealthy techniques and sophisticated attacks.
โคท Title: RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Deeba Ahmed
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Thu, 27 Mar 2025 16:41:28 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Deeba Ahmed
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Thu, 27 Mar 2025 16:41:28 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Earth Kapre #Hypervisor #LOTL #QWCrypt #Ransomware #Red Wolf #RedCurl
Hackread
RedCurl Uses New QWCrypt Ransomware in Hypervisor Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
โคท Title: GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Fri, 12 Dec 2025 01:52:16 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Malware #BYOVD #Canada #corporate espionage #EDR Killer #GOLD BLADE #QWCrypt Ransomware #Recruitment Lure #RedCurl #RedWolf
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Fri, 12 Dec 2025 01:52:16 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Malware #BYOVD #Canada #corporate espionage #EDR Killer #GOLD BLADE #QWCrypt Ransomware #Recruitment Lure #RedCurl #RedWolf
Daily CyberSecurity
GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes
GOLD BLADE (RedCurl) targets Canadian firms (80% of attacks) with espionage and QWCrypt ransomware. The group uses fake resumes and a BYOVD EDR killer (Zemana driver) to disable security controls.