Get a Pentest and security assessment of your IT network.

News

Salfram: Robbing the place without removing your name tag

Cisco Talos recently uncovered a series of email campaigns utilizing links to malicious documents hosted on legitimate file-sharing platforms to spread malware. The use of web-based contact forms, legitimate hosting platforms, and a specific crypter make analysis and detection more difficult. While effective, this crypting mechanism contains an easy-to-detect flaw: The presence of a specific string value “Salfram” makes it easy to track over time. The crypter used in these campaigns is undergoing active development and improvements to obfuscate the contents of malware.”]

Source: https://blog.talosintelligence.com/2020/09/salfram-robbing-place-without-removing.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months