Rezultati pretraživanja
  1. 4. velj
  2. 3. velj

    The Chinese-linked threat group operating under the same cover as , , , , and , was observed using a new variant of the , the group’s flagship tool, to target and attack Hong Kong universities.

  3. 3. velj
  4. 3. velj
  5. 2. velj
  6. 1. velj

    The Winnti Group is targeting Hong Kong universities using ShadowPad and Winnti malware, according to new research

  7. 1. velj

    Sigma rule to detect malware process starts as described in ESET's recent blog post on a campaign against HK universities (derived from sandbox reports - won't share them yet) Sigma Rule Report

  8. 1. velj
  9. 1. velj

    Group has compromised computer systems at two Hong Kong universities during the Hong Kong protests that started in March 2019.

  10. 1. velj

    2020-01-31: 🇨🇳 Targets Universities👨‍🎓 🔩|XOR Decoder| rule apt_win32_winnti_xordec { strings: $decoder_xor = { 8B C3 C1 E3 10 C1 E8 10 03 D8 6B DB 77 83 C3 13 } condition: $decoder_xor } Ref⬇️

  11. ESET has released their report on new variants of /, used against two universities in Hongkong.

    Prikaži ovu nit
  12. 31. sij
  13. 31. sij

    : researchers uncover a new campaign by the , known for attacks against various high-profile targets. This time, the WinntiGroup took aim at Hong Kong universities.

  14. 31. sij
    Prikaži ovu nit
  15. 31. sij
  16. 31. sij
  17. 31. sij

    2020-01-30:🇨🇳 Possible 64-Bit DLL User J | 🔩 ⛓️Main (dynamic_api_load -> v alloc/memcpy) 🔦Original DLL Loader Name “stone64.dll” 🔥Reference Winnti Espionage Involvement in 🇩🇪 Lanxess / Rheinchemie Hack h/t Link & Sample⬇️

  18. In January, a sample popped up on VT, had a lot of infosec-researchers scratch their heads. A sample, compiled in 2015, with the campaign ID "Rheinchemie." (part of Lanxess). This variant of Winnti was very well understood by then. (2/6)

    Prikaži ovu nit
  19. New: Another huge german company in the chemical industry was hacked by : Lanxess. A spokesperson confirmed that the company became aware of the intrusion in the "second half of 2019". Short thread: (1/6)

    Prikaži ovu nit

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.