#kazuar — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #kazuar, aggregated by home.social.
-
📰 Russian APT Turla Evolves Kazuar Backdoor into Stealthy P2P Botnet
🇷🇺 Russian APT Turla has upgraded its Kazuar backdoor into a modular P2P botnet. The new architecture enhances stealth and resilience, making it harder to detect and disrupt. The focus remains on long-term espionage. #Turla #APT #Kazuar #CyberSecur...
🌐 cyber[.]netsecops[.]io
-
Kazuar si evolve: Secret Blizzard (Turla) trasforma il suo backdoor storico in una botnet P2P modulare invisibile
Il gruppo russo Secret Blizzard (Turla/FSB) ha trasformato il malware Kazuar in una botnet peer-to-peer con tre moduli distinti (Kernel, Bridge, Worker) e 150 parametri di configurazione. La nuova architettura usa un sistema di elezione del leader per ridurre al minimo il traffico verso i server C2, rendendo il rilevamento estremamente difficile. Obiettivi: governi, ambasciate e settore difesa in Europa e Ucraina. -
Kazuar si evolve: Secret Blizzard (Turla) trasforma il suo backdoor storico in una botnet P2P modulare invisibile
Il gruppo russo Secret Blizzard (Turla/FSB) ha trasformato il malware Kazuar in una botnet peer-to-peer con tre moduli distinti (Kernel, Bridge, Worker) e 150 parametri di configurazione. La nuova architettura usa un sistema di elezione del leader per ridurre al minimo il traffico verso i server C2, rendendo il rilevamento estremamente difficile. Obiettivi: governi, ambasciate e settore difesa in Europa e Ucraina. -
Kazuar si evolve: Secret Blizzard (Turla) trasforma il suo backdoor storico in una botnet P2P modulare invisibile
Il gruppo russo Secret Blizzard (Turla/FSB) ha trasformato il malware Kazuar in una botnet peer-to-peer con tre moduli distinti (Kernel, Bridge, Worker) e 150 parametri di configurazione. La nuova architettura usa un sistema di elezione del leader per ridurre al minimo il traffico verso i server C2, rendendo il rilevamento estremamente difficile. Obiettivi: governi, ambasciate e settore difesa in Europa e Ucraina. -
Kazuar si evolve: Secret Blizzard (Turla) trasforma il suo backdoor storico in una botnet P2P modulare invisibile
Il gruppo russo Secret Blizzard (Turla/FSB) ha trasformato il malware Kazuar in una botnet peer-to-peer con tre moduli distinti (Kernel, Bridge, Worker) e 150 parametri di configurazione. La nuova architettura usa un sistema di elezione del leader per ridurre al minimo il traffico verso i server C2, rendendo il rilevamento estremamente difficile. Obiettivi: governi, ambasciate e settore difesa in Europa e Ucraina. -
Kazuar si evolve: Secret Blizzard (Turla) trasforma il suo backdoor storico in una botnet P2P modulare invisibile
Il gruppo russo Secret Blizzard (Turla/FSB) ha trasformato il malware Kazuar in una botnet peer-to-peer con tre moduli distinti (Kernel, Bridge, Worker) e 150 parametri di configurazione. La nuova architettura usa un sistema di elezione del leader per ridurre al minimo il traffico verso i server C2, rendendo il rilevamento estremamente difficile. Obiettivi: governi, ambasciate e settore difesa in Europa e Ucraina. -
Turla Upgrades Kazuar Backdoor to Modular P2P Botnet
Microsoft's Threat Intelligence team has uncovered a significant upgrade to the Kazuar backdoor by the notorious Russian state-sponsored group Turla, now a modular P2P botnet designed for long-term intelligence collection. This move enables Turla to maintain a persistent grip on compromised systems.
-
Kazuar: Anatomy of a nation-state botnet - https://www.redpacketsecurity.com/kazuar-anatomy-of-a-nation-state-botnet/
#threatintel
#kazuar
#secret-blizzard
#botnet
#malware-analysis
#threat-intelligence -
Kazuar: Anatomy of a nation-state botnet - https://www.redpacketsecurity.com/kazuar-anatomy-of-a-nation-state-botnet/
#threatintel
#kazuar
#secret-blizzard
#botnet
#malware-analysis
#threat-intelligence -
Kazuar: Anatomy of a nation-state botnet - https://www.redpacketsecurity.com/kazuar-anatomy-of-a-nation-state-botnet/
#threatintel
#kazuar
#secret-blizzard
#botnet
#malware-analysis
#threat-intelligence -
Kazuar: Anatomy of a nation-state botnet - https://www.redpacketsecurity.com/kazuar-anatomy-of-a-nation-state-botnet/
#threatintel
#kazuar
#secret-blizzard
#botnet
#malware-analysis
#threat-intelligence -
Kazuar: Anatomy of a nation-state botnet - https://www.redpacketsecurity.com/kazuar-anatomy-of-a-nation-state-botnet/
#threatintel
#kazuar
#secret-blizzard
#botnet
#malware-analysis
#threat-intelligence -
Pelmeni Wrapper: New Wrapper of Kazuar (Turla Backdoor)
A new malware sample used in targeted campaigns by the Turla APT group has been analyzed. The malware employs a new wrapper, dubbed Pelmeni, to deploy the Kazuar backdoor. Differences in exfiltration methods and logging from previous versions of Kazuar were identified.
Pulse ID: 65d5c00be70d5ee9ef2c57ce
Pulse Link: https://otx.alienvault.com/pulse/65d5c00be70d5ee9ef2c57ce
Pulse Author: AlienVault
Created: 2024-02-21 09:19:07Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#OTX #OpenThreatExchange #InfoSec #bot #CyberSecurity #Malware #BackDoor #RAT #Turla #Kazuar #AlienVault
-
Upgraded Kazuar Backdoor Offers Stealthy Power – Source: www.darkreading.com https://ciso2ciso.com/upgraded-kazuar-backdoor-offers-stealthy-power-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #DARKReading #Upgraded #Kazuar
-
Upgraded Kazuar Backdoor Offers Stealthy Power – Source: www.darkreading.com https://ciso2ciso.com/upgraded-kazuar-backdoor-offers-stealthy-power-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #DARKReading #Upgraded #Kazuar
-
APT Turla обновила обновила свои бэкдоры HyperStack, Kazuar и Carbon #APT, #Turla, #HyperStack, #Kazuar, #Carbon, #Accenture https://www.securitylab.ru/news/513523.php https://twitter.com/SecurityLabnews/status/1321810277571137536/photo/1
-
APT Turla обновила обновила свои бэкдоры HyperStack, Kazuar и Carbon #APT, #Turla, #HyperStack, #Kazuar, #Carbon, #Accenture https://www.securitylab.ru/news/513523.php https://twitter.com/SecurityLabnews/status/1321810277571137536/photo/1