SANS Internet Storm is reporting on a simple, non-obfuscated batch file script that evaded detection. A Simple Batch File That Blocks People – SANS Internet Storm Centre
Notable malware of 2021 – is your scanner looking at the big files?
Here is an unusual list of things from 2021 – the most interesting malware. Do you want your Agent Tesla in the 300 MB or 8 kB package? – SANS Internet Storm The most interesting thing about this article is that some AV and malware scanners have a size limit …
Continue reading “Notable malware of 2021 – is your scanner looking at the big files?”
Old malware now new malware
Commercial software has regular updates, of course the bad guys have updates as well. Agent Tesla Updates SMTP Data Exfiltration Technique – SANS Internet Storm Centre
Log4j updates
Latest update about Log4j from SANS Internet Diary. Log4j 2 Security Vulnerabilities Update Guide – SANS Internet Storm Centre
Software abuse at source
Hackers are abusing the MSBuild environment to embedded malicious code into applications to evade detection. Attackers are abusing MSBuild to evade defences and implant Cobalt Strike beacons – SANS Internet Storm Centre