[ ARCHIVE ]

Author: oUth0R

// Detection

All Hackers Go To Cloud

All Hackers Go To Cloud ☁️💻 During the investigation of an incident in a fully encrypted infrastructure, we identified an autonomous web server hosting the clie…

oUth0R
// Threats

(Ex)Cobalt == (Ex)Carbanak

(Ex)Cobalt == (Ex)Carbanak 🤔 Since the beginning of 2025, the PT ESC team has observed a rise in the number of attacks using the SshDoor backdoor. Russian gover…

oUth0R
// Detection

A complex password won't help

A complex password won't help 📮 The practice of the PT ESC IR information security incident response team shows that attackers, upon gaining access to companies…

oUth0R
// Threats

1C_shell for "1C"

1C_shell for "1C" 🦞 Sometimes situations arise when, during an information security incident investigation, the traditionally used OS artifacts contain extremel…

oUth0R
// Detection

CVE-2024-37085

Net group "babyk" /add During the investigation of one of the incidents, we discovered the exploitation of the CVE-2024-37085 vulnerability. It allows…

oUth0R