[ FEED // CHRONO // 267 ITEMS ]

ALL MATERIALS

// Threats

Tools for working with Python

Tools for Working with Python 😦 Attackers are not shy about using Python for their purposes. LazyStealer, packaged with PyInstaller, the Python backdoor in Shad…

ti_author
// Threats

Viper style

Viper Style 🐍 Can an attacker use well-known tools and remain undetected for over a year and a half? Our answer is yes. In mid-October 2024, the cyber intellige…

ti_author
// Threats

Your hash, please… Thank you!

Your hash, please… Thank you! 🙏 In early January, we discovered a file that drew attention for its content and structure. An examination of the document's metad…

ti_author
// Threats

Lok'tar ogar!

Lok'tar ogar! 👺 In today's world, attacks aimed at gaining initial access have become more sophisticated. Threat actors use multi-stage payloads, which allows t…

global_author
// Threats

One lazy driver

🚘 One lazy driver Recently, the PT ESC cyber intelligence group discovered an executable file with an "unusual" name, reinforced by a distinctive PDF file icon…

ti_author
// Detection

Mount point. Pt 2

Mount point. Pt 2 Hello! We decided to talk about disk mounting again. Today we'll tell you how to work with LVM containers. Here's a short manual so you don't…

oUth0R