Generic filters

spearphishing

The Ransomware Ecosystem

At the RSA Conference in 2020, Joel DeCapua, a supervisory special agent with the Federal Bureau of Investigation (FBI), revealed that ransomware groups had collectively earned over $144 million from 2013 through 2019, which was considered a staggering number at the time. However, in 2020 alone, ransomware groups reportedly earned $692 million from their collective …

The Ransomware Ecosystem Read More »

How to Map MITRE ATT&CK Techniques: Bridging the Gap between Theory and Implementation

MITRE ATT&CK and ThreatQ The MITRE ATT&CK framework contains a tremendous amount of data that can prove valuable in a range of use cases, including spearphishing, threat hunting, incident response, vulnerability management and alert triage. To make the information contained within the MITRE ATT&CK framework actionable for these use cases, ThreatQuotient integrates components of the …

How to Map MITRE ATT&CK Techniques: Bridging the Gap between Theory and Implementation Read More »

Operation In(ter)ception: Targeted attacks against European aerospace and military companies

ESET researchers have discovered an operation, with a possible link to the infamous Lazarus group, that used unconventional spearphishing and custom, multistage malware against aerospace and military companies. ESET researchers have discovered highly targeted cyberattacks that are notable for using LinkedIn-based spearphishing, employing effective tricks to stay under the radar and apparently having financial gain, …

Operation In(ter)ception: Targeted attacks against European aerospace and military companies Read More »

Advisory 2020-008: Copy-Paste Compromises – tactics, techniques and procedures used to target multiple Australian networks

 Overview This advisory details the tactics, techniques and procedures (TTPs) identified during the Australian Cyber Security Centre’s (ACSC) investigation of a cyber campaign targeting Australian networks. These TTPs are captured in the frame of tactics and techniques outlined in the MITRE ATT&CK®1 framework. Campaign Summary The Australian Government is currently aware of, and responding to, …

Advisory 2020-008: Copy-Paste Compromises – tactics, techniques and procedures used to target multiple Australian networks Read More »

McAfee Labs Threats Report: August 2019

McAfee has released its McAfee Labs Threats Report: August 2019 examining cybercriminal activity and the evolution of cyber threats in Q1 2019. McAfee Labs saw an average of 504 new threats per minute in Q1 and a resurgence of ransomware along with changes in campaign execution and code