Severity Medium Analysis Summary Loki-Bot (also spelled “Loki Bot” or “LokiBot”) is an information stealer that sends login credentials and other sensitive data from an infected […]
Severity High Analysis Summary A new family of ransomware named LooCipher has emerged. The researchers note that LooCipher’s functionality is not significantly different than other ransomware […]
Severity Medium Analysis Summary Godlua is the first malware that abuses the DNS over HTTPS (DoH) protocol to protect its command and control infrastructure. Godlua Backdoor […]
Severity Medium Analysis Summary Threat actors abusing an Outlook vulnerability to plant malware on government networks. The vulnerability is CVE-2017-11774, a security bug that Microsoft patched […]
Severity Medium Analysis Summary A new phishing campaign used to trick users. This campaign exploits QR codes to evade security measures. The new phishing campaign makes […]
Severity High Analysis Summary When Sodin (also known as Sodinokibi and REvil) appeared in the first half of 2019, it immediately caught attention for distributing itself […]
Severity Medium Analysis Summary Threat actors increasingly distributing downloaders, backdoors, information stealers, remote access trojans (RATs), and more as they abandoned ransomware as their primary payload. […]
Severity Medium Analysis Summary Large spam campaign impersonating invoices. Title “E-Invoice Orange” is attached brushaloader, which will download the banking Trojan danabot currently attacking clients of […]
Severity High Analysis Summary The OceanLotus Group aka APT32 is using a suite of remote access trojans dubbed “Ratsnif” to leverage new network attack capabilities. Researchers […]