[ GROUP // GENERAL // 103 ITEMS ]

GENERAL

> in section Detection

// Threats

By the way, about Offzone

By the way, about Offzone 🙂 We promised to publish the latest version of the presentation from the talk about ExCobalt's maneuvers in the channel — here it is 🤝…

oUth0R
// Detection

Exfiltration gone wrong

😈 Exfiltration Gone Wrong When investigating incidents, we periodically encounter threat actors exfiltrating data before encrypting infrastructure. One of the e…

oUth0R
// Threats

!!r^d**n**c

!!р^д**н**c 🤔 A characteristic example of how threat actors use current events to distribute malicious programs is a malicious document we discovered. It contai…

ti_author
// Detection

Analysis of reports.db

☝️ In addition to Windows logs, another interesting artifact provided by a popular antivirus protection tool helped us in investigating the activity described i…

oUth0R
// Threats

Industrial-scale exfiltration

Exfiltration on an industrial scale 😐 The APT group Cloud Atlas has been attacking Russian companies since 2019, engaging in espionage and theft of confidential…

oUth0R