πNew WriteupβοΈ
βββββββββββββββ
πDate: Mon, 26 Jun 2023 19:52:00 GMT
βββββββββββββββ
βοΈTitle: Automated Incident Response with Trellix Endpoint Security
βββββββββββββββ
πLink: https://medium.com/p/706a07959bb2
βββββββββββββββ
Tags: #cybersecurity #soar #trellix #mcafee #incident_response
βββββββββββββββ
πDate: Mon, 26 Jun 2023 19:52:00 GMT
βββββββββββββββ
βοΈTitle: Automated Incident Response with Trellix Endpoint Security
βββββββββββββββ
πLink: https://medium.com/p/706a07959bb2
βββββββββββββββ
Tags: #cybersecurity #soar #trellix #mcafee #incident_response
Medium
Automated Incident Response with Trellix Endpoint Security
Trellix (formerly McAfee) Endpoint Security and Smart SOAR combine to produce a unified threat management and incident response systemβ¦
β€· Title: Lumma Stealer: Advanced Obfuscation and Evasion Techniques Analysis
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 25 Apr 2025 00:16:52 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #anti_sandbox #API hashing #data exfiltration #Heaven's Gate #Infostealer #Lumma Stealer #MaaS #Malware Analysis #Obfuscation #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 25 Apr 2025 00:16:52 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #anti_sandbox #API hashing #data exfiltration #Heaven's Gate #Infostealer #Lumma Stealer #MaaS #Malware Analysis #Obfuscation #Trellix
Daily CyberSecurity
Lumma Stealer: Advanced Obfuscation and Evasion Techniques Analysis
Trellix analysis reveals Lumma Stealer's latest tactics: code obfuscation, API hashing, ETW evasion, anti-VM. Learn how this InfoStealer avoids detection.
β€· Title: βOneClikβ APT Unmasked: China-Linked Campaign Abuses Microsoft ClickOnce & AWS Cloud to Target Energy Sector
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 27 Jun 2025 07:36:07 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #APT #AWS #cloud security #Cyberespionage #cybersecurity #Energy Sector #Go Language #malware #Microsoft ClickOnce #Oil and Gas #OneClik #RunnerBeacon #Trellix
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 27 Jun 2025 07:36:07 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #APT #AWS #cloud security #Cyberespionage #cybersecurity #Energy Sector #Go Language #malware #Microsoft ClickOnce #Oil and Gas #OneClik #RunnerBeacon #Trellix
Penetration Testing Tools
"OneClik" APT Unmasked: China-Linked Campaign Abuses Microsoft ClickOnce & AWS Cloud to Target Energy Sector
Trellix uncovers "OneClik," a sophisticated APT campaign abusing Microsoft ClickOnce and AWS cloud services to deploy Go-language backdoors, targeting energy, oil, and gas sectors.
β€· Title: DoNot APT Expands to Europe: Targets Foreign Ministry with LoptikMod Malware via Google Drive Phishing
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 11 Jul 2025 00:11:52 +0000
ββββββββββββββββββββββββ
β Tags: #Cyber Security #APT_C_35 #Cyberespionage #cybersecurity #DONOT APT #Europe #Foreign Affairs #Google Drive #LoptikMod #malware #Mint Tempest #Origami Elephant #phishing #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 11 Jul 2025 00:11:52 +0000
ββββββββββββββββββββββββ
β Tags: #Cyber Security #APT_C_35 #Cyberespionage #cybersecurity #DONOT APT #Europe #Foreign Affairs #Google Drive #LoptikMod #malware #Mint Tempest #Origami Elephant #phishing #Trellix
Daily CyberSecurity
DoNot APT Expands to Europe: Targets Foreign Ministry with LoptikMod Malware via Google Drive Phishing
DoNot APT (APT-C-35) expands its cyber-espionage to a European foreign affairs ministry, using spear-phishing with Google Drive links to deliver the LoptikMod backdoor.
β€· Title: Stealthy SquidLoader Malware Targets Hong Kong Financial Firms with Evasive Cobalt Strike Attacks
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 17 Jul 2025 00:28:19 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cobalt Strike #cyberattack #cybersecurity #Financial services #Hong Kong #malware #SquidLoader #threat intelligence #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 17 Jul 2025 00:28:19 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cobalt Strike #cyberattack #cybersecurity #Financial services #Hong Kong #malware #SquidLoader #threat intelligence #Trellix
Daily CyberSecurity
Stealthy SquidLoader Malware Targets Hong Kong Financial Firms with Evasive Cobalt Strike Attacks
Trellix has uncovered SquidLoader, a highly obfuscated malware targeting Hong Kong financial institutions to deploy Cobalt Strike beacons for persistent control.
β€· Title: SquidLoader Malware Campaign Hits Hong Kong Financial Firms
ββββββββββββββββββββββββ
πͺ Author: Deeba Ahmed
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 20 Jul 2025 15:53:39 +0000
ββββββββββββββββββββββββ
β Tags: #Security #Malware #Cyber Attack #Cybersecurity #Hong Kong #SquidLoader #Trellix #VirusTotal
ββββββββββββββββββββββββ
πͺ Author: Deeba Ahmed
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 20 Jul 2025 15:53:39 +0000
ββββββββββββββββββββββββ
β Tags: #Security #Malware #Cyber Attack #Cybersecurity #Hong Kong #SquidLoader #Trellix #VirusTotal
Hackread
SquidLoader Malware Campaign Hits Hong Kong Financial Firms
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
β€· Title: 0bj3ctivityStealer: Stealthy Info-Stealer Uses Steganography & PowerShell to Evade Detection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 30 Jul 2025 00:18:04 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #0bj3ctivityStealer #cybersecurity #data exfiltration #evasion #Infostealer #malware #phishing #powershell #steganography #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 30 Jul 2025 00:18:04 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #0bj3ctivityStealer #cybersecurity #data exfiltration #evasion #Infostealer #malware #phishing #powershell #steganography #Trellix
Daily CyberSecurity
0bj3ctivityStealer: Stealthy Info-Stealer Uses Steganography & PowerShell to Evade Detection
Trellix uncovers 0bj3ctivityStealer, a sophisticated info-stealer using phishing, custom PowerShell, and steganography to evade detection and exfiltrate sensitive data.
β€· Title: Spies in Plain Sight: How North Korean Hackers Used GitHub to Attack Embassies
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 20 Aug 2025 00:22:37 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #Cyberespionage #Diplomatic Attacks #github #Kimsuky #North Korea #spear_phishing #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 20 Aug 2025 00:22:37 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #Cyberespionage #Diplomatic Attacks #github #Kimsuky #North Korea #spear_phishing #Trellix
Daily CyberSecurity
Spies in Plain Sight: How North Korean Hackers Used GitHub to Attack Embassies
A new report reveals a North Korean espionage campaign targeting embassies with spear phishing and a sophisticated C2 channel hidden on GitHub.
β€· Title: Inside Kimsukyβs GitHub-Powered Cyber-Espionage Campaign
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 20 Aug 2025 04:28:53 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #C2 #Cyber Espionage #cybersecurity #Github #Kimsuky #North Korea #Spear Phishing #Trellix
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 20 Aug 2025 04:28:53 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #C2 #Cyber Espionage #cybersecurity #Github #Kimsuky #North Korea #Spear Phishing #Trellix
Penetration Testing Tools
Inside Kimsuky's GitHub-Powered Cyber-Espionage Campaign
A new report from Trellix reveals how the Kimsuky group used GitHub and sophisticated spear phishing to conduct a cyber-espionage campaign against diplomatic missions.
β€· Title: A New Linux Malware Hides in Plain Sight by Weaponizing File Names
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 25 Aug 2025 00:30:12 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Bash #cyber attack #cybersecurity #Fileless Malware #filenames #Linux #malware #Trellix #VShell
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 25 Aug 2025 00:30:12 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Bash #cyber attack #cybersecurity #Fileless Malware #filenames #Linux #malware #Trellix #VShell
Daily CyberSecurity
A New Linux Malware Hides in Plain Sight by Weaponizing File Names
A new report reveals a dangerous Linux malware campaign that uses malicious filenames to execute a stealthy, fileless attack without the victim's knowledge.
β€· Title: Weaponizing Filenames: Trellix Uncovers Stealthy Linux Malware Delivering VShell Backdoor
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 25 Aug 2025 02:07:58 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Bash #cyber attack #cybersecurity #Fileless Malware #filenames #Linux #malware #Trellix #VShell
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 25 Aug 2025 02:07:58 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Bash #cyber attack #cybersecurity #Fileless Malware #filenames #Linux #malware #Trellix #VShell
Penetration Testing Tools
Weaponizing Filenames: Trellix Uncovers Stealthy Linux Malware Delivering VShell Backdoor
A new report reveals a dangerous Linux malware campaign that uses malicious filenames to execute a stealthy, fileless attack without the victim's knowledge.
β€· Title: Beyond Simple Scripts: A New XWorm Campaign Uses Multi-Stage Stealth
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 05 Sep 2025 00:05:39 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #backdoor #Cybercrime #cybersecurity #LNK File #malware #phishing #Trellix #windows #XWorm
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 05 Sep 2025 00:05:39 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #backdoor #Cybercrime #cybersecurity #LNK File #malware #phishing #Trellix #windows #XWorm
Daily CyberSecurity
Beyond Simple Scripts: A New XWorm Campaign Uses Multi-Stage Stealth
A new report reveals a sophisticated XWorm backdoor campaign that uses .lnk files and a multi-stage infection chain to gain stealthy and persistent control of Windows systems.
β€· Title: XWorm V6.0 Resurfaces: Modular RAT Returns with Ransomware Plugin and Advanced Evasion
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 04 Oct 2025 00:00:32 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #AMSI Bypass #cybersecurity #ransomware #rat #Remote Access Trojan #Trellix #windows #XWorm
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 04 Oct 2025 00:00:32 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #AMSI Bypass #cybersecurity #ransomware #rat #Remote Access Trojan #Trellix #windows #XWorm
Daily CyberSecurity
XWorm V6.0 Resurfaces: Modular RAT Returns with Ransomware Plugin and Advanced Evasion
XWorm V6.0 has resurfaced with 35+ plugins, including ransomware functionality. The modular RAT uses stealth injection and obfuscated PowerShell to bypass AMSI.
β€· Title: CrazyHunter: The βRuthlessβ Ransomware Stalking Healthcare
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 08 Jan 2026 02:17:34 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Active Directory Security #BYOVD (Bring Your Own Vulnerable Driver) #CrazyHunter #healthcare security #Malware Analysis #ransomware #SharpGPOAbuse #Trellix
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 08 Jan 2026 02:17:34 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Active Directory Security #BYOVD (Bring Your Own Vulnerable Driver) #CrazyHunter #healthcare security #Malware Analysis #ransomware #SharpGPOAbuse #Trellix
Daily CyberSecurity
CrazyHunter: The βRuthlessβ Ransomware Stalking Healthcare
A new, highly aggressive ransomware strain is cutting a swath through the healthcare sector, leaving hospitals and critical organizations scrambling to protect their data. Security researchers at β¦