[ TAG // TI // 134 ITEMS ]

#ti

← Threats // General

// Threats

Tools for working with Python

Tools for Working with Python 😦 Attackers are not shy about using Python for their purposes. LazyStealer, packaged with PyInstaller, the Python backdoor in Shad…

ti_author
// Threats

Viper style

Viper Style 🐍 Can an attacker use well-known tools and remain undetected for over a year and a half? Our answer is yes. In mid-October 2024, the cyber intellige…

ti_author
// Threats

Your hash, please… Thank you!

Your hash, please… Thank you! 🙏 In early January, we discovered a file that drew attention for its content and structure. An examination of the document's metad…

ti_author
// Threats

One lazy driver

🚘 One lazy driver Recently, the PT ESC cyber intelligence group discovered an executable file with an "unusual" name, reinforced by a distinctive PDF file icon…

ti_author
// Threats

Another Python stealer?!

Another stealer in Python?! 🫣 Since the beginning of September, we have been tracking attacks that at first glance could be attributed to the activity of the La…

ti_author
// Threats

What is wrong with this AES?

What exactly is wrong with this AES? ❔ Attackers often use encryption to obfuscate parts of malware samples that may be of greatest interest during research. Wh…

ti_author
// Threats

Through blockchain to data

Through the blockchain to the data ⭐️ Researchers from Socket and Checkmarx have reported on an interesting malicious campaign in NPM. The attackers mimicked pl…

ti_author
// Threats

Copy, copy, can you hear us?

Over, over, can you hear us? 😲 Despite the fact that hackers have recently gotten lazy and increasingly don't develop anything of their own, original attack ide…

ti_author