Alerts

TA17-163A: CrashOverride Malware

Original release date: June 12, 2017 | Last revised: July 27, 2017Systems Affected Industrial Control Systems Overview The National Cybersecurity and Communications Integration Center (NCCIC) ...

Alerts

TA17-164A: HIDDEN COBRA – North Korea’s DDoS Botnet Infrastructure

Original release date: June 13, 2017 | Last revised: August 23, 2017Systems Affected Networked Systems Overview This joint Technical Alert (TA) is the result of analytic efforts between the De...

Alerts

TA17-132A: Indicators Associated With WannaCry Ransomware

Original release date: May 12, 2017 | Last revised: May 19, 2017Systems Affected Microsoft Windows operating systems Overview According to numerous open-source reports, a widespread ransomware campaign is affec...

Uncategorized

Thailand at the bottom of Asias E-Commerce Conversion Stats

Last year saw some really intresting global changes for E-Commerce traffic, however how will this effect the web masters and designs for Thailands sites and platforms? For Thailand, desktop conversion rate is 1...

Uncategorized

Slingshot Malware targets Sysadmins

The best way to get the keys to the kingdom is to get the sys admins passwords… The malware, dubbed Slingshot by researchers at Kaspersky Lab and showcased at the firm’s Security Analyst Summit,...

Uncategorized

Bitcoin Raids – Erm where are our servers?

Icelandic police have iced, i mean arrested 11 people in connection with four raids on data centers that targeted cryptocurrency mining equipment. Starting in December 2017 three data centers were opened and cr...

Security

Zepto Evasion Techniques

We’ve been tracking some more spam dropping Zepto ransomware variants. Like earlier posts, we’re seeing infected attachments with malicious macro scripts used as the entry point for the threat actor. (See image...

Security

Donoff Macro Dropping Ransomware

Recently, we’ve spotted Zepto ransomware spreading through spam email containing fake invoices (see image below). These attachments contain a Macro-Enabled word document file known as Donoff, which downloads th...

Security

Zepto Ransomware Packed into WSF Spam

ThreatTrack Labs has recently observed a surge of spam containing a zip attachment with a WSF (Windows Scripting File) to deliver Zepto ransomware. This tactic is a change from the common JavaScript and ma...

Security

A Look at the Cerber Office 365 Ransomware

Reports of a Zero-day attack affecting numerous Office 365 users emerged late last month (hat tip to the researchers at Avanan), and the culprit was a new variant of the Cerber ransomware discovered earlier thi...