Get a Pentest and security assessment of your IT network.

News

Salfram: Robbing the place without removing your name tag

Cisco Talos recently uncovered a series of email campaigns utilizing links to malicious documents hosted on legitimate file-sharing platforms to spread malware. The use of web-based contact forms, legitimate hosting platforms, and a specific crypter make analysis and detection more difficult. While effective, this crypting mechanism contains an easy-to-detect flaw: The presence of a specific string value “Salfram” makes it easy to track over time. The crypter used in these campaigns is undergoing active development and improvements to obfuscate the contents of malware.”]

Source: https://blog.talosintelligence.com/2020/09/salfram-robbing-place-without-removing.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin