The US Federal Trade Commission is taking a strong position when it comes to companies fixing any Log4j vulnerabilities. FTC threatens legal action over unpatched Log4j systems • The Register FTC warns legal action against companies who fail to mitigate Log4Shell – The Record by Recorded Future
A specific but large target – but what does it do?
Targeting Chinese speaking people gives you a lot of potential targets but the researcher at SANS was unsure what this malicious does. Malicious Python Script Targeting Chinese People – SANS Internet Storm Center
Hackers reuse code as well
It is a classic move of any developer to reuse code – actually it is a professional move to reuse code that you know works. So it is no surprise that hackers take professional steps to ensure their malware attacks work. Even taking legitimate code from GitHub. Code Reuse In …
A malicious script that only one AV package detected!
SANS Internet Storm is reporting on a simple, non-obfuscated batch file script that evaded detection. A Simple Batch File That Blocks People – SANS Internet Storm Centre
UK’s Defence Academy cyber-attacked
This is a from a Sky News report, who interviewed y someone who was employed at the UK Defence Academy, when the attack is alleged to have happened. There is no attribution for the attack. This article is in The Guardian. Cyber-attack on UK’s Defence Academy caused ‘significant’ damage | …