[ FEED // CHRONO // 267 ITEMS ]

ALL MATERIALS

// Detection

Mount Point — pt.1

Mount Point — pt.1 🙂 Any investigation is an analysis of operating system artifacts. And to obtain them, you often have to work with virtual machine images, suc…

oUth0R
// Threats

Another Python stealer?!

Another stealer in Python?! 🫣 Since the beginning of September, we have been tracking attacks that at first glance could be attributed to the activity of the La…

ti_author
// Threats

What is wrong with this AES?

What exactly is wrong with this AES? ❔ Attackers often use encryption to obfuscate parts of malware samples that may be of greatest interest during research. Wh…

ti_author
// Threats

Through blockchain to data

Through the blockchain to the data ⭐️ Researchers from Socket and Checkmarx have reported on an interesting malicious campaign in NPM. The attackers mimicked pl…

ti_author

Not a Pwn2Own bug

Not a Pwn2Own bug 🙂 CVE-2024-43641: a CWE-190 type error allowed overflowing the reference count on a _CM_KEY_SECURITY instance. The vulnerable code was located…

author_vr
// Threats

Copy, copy, can you hear us?

Over, over, can you hear us? 😲 Despite the fact that hackers have recently gotten lazy and increasingly don't develop anything of their own, original attack ide…

ti_author
// Threats

APT-C-60, or DarkHotel

APT-C-60, aka DarkHotel 💿 We once talked about the use of VHDX files in attacks and why it is convenient (no, this is not a call to action). You can find that p…

ti_author