home.social

#mallox — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #mallox, aggregated by home.social.

  1. SOCRadar provides a threat actor profile for Mallox Ransomware group. Mallox Ransomware, aka TargetCompany, Tohnichi, and Fargo, is a ransomware group active since mid-2021 using multi-extortion tactics. Their initial infection vector includes exploiting CVE-2019-1068 (8.8 high, disclosed 15 July 2019 by Microsoft, SQL Server RCE) and CVE-2020-0618 (8.8 high, disclosed 11 February 2020 by Microsoft, SQL Server Reporting Services RCE), brute force attacks against internet facing applications, and phishing emails with attachments. SOCRadar provides a description of other TTPs, mapped to MITRE ATT&CK. IOC provided with dates. 🔗 socradar.io/dark-web-profile-m

    #Mallox #Ransomware #threatintel #IOC

  2. SOCRadar provides a threat actor profile for Mallox Ransomware group. Mallox Ransomware, aka TargetCompany, Tohnichi, and Fargo, is a ransomware group active since mid-2021 using multi-extortion tactics. Their initial infection vector includes exploiting CVE-2019-1068 (8.8 high, disclosed 15 July 2019 by Microsoft, SQL Server RCE) and CVE-2020-0618 (8.8 high, disclosed 11 February 2020 by Microsoft, SQL Server Reporting Services RCE), brute force attacks against internet facing applications, and phishing emails with attachments. SOCRadar provides a description of other TTPs, mapped to MITRE ATT&CK. IOC provided with dates. 🔗 socradar.io/dark-web-profile-m

    #Mallox #Ransomware #threatintel #IOC

  3. I have been seeing A LOT of verified compromises circulating hacker forums because of #BlackCat, #LockBit, #HiveRansomware, #Mallox, #BlackBasta #RoyalRansomware, #BianLian, #CubaRansomware, #BloodyRansomwareGang, #RansomEXX - I'm talking multiple terabytes of data, hundreds of millions of account details, across pretty much every single sector. Most common method of infection? #BusinessEmailCompromise! Be super mindful of the links you click on, the attachments you download, and the sites you visit

  4. I have been seeing A LOT of verified compromises circulating hacker forums because of #BlackCat, #LockBit, #HiveRansomware, #Mallox, #BlackBasta #RoyalRansomware, #BianLian, #CubaRansomware, #BloodyRansomwareGang, #RansomEXX - I'm talking multiple terabytes of data, hundreds of millions of account details, across pretty much every single sector. Most common method of infection? #BusinessEmailCompromise! Be super mindful of the links you click on, the attachments you download, and the sites you visit

  5. I have been seeing A LOT of verified compromises circulating hacker forums because of #BlackCat, #LockBit, #HiveRansomware, #Mallox, #BlackBasta #RoyalRansomware, #BianLian, #CubaRansomware, #BloodyRansomwareGang, #RansomEXX - I'm talking multiple terabytes of data, hundreds of millions of account details, across pretty much every single sector. Most common method of infection? #BusinessEmailCompromise! Be super mindful of the links you click on, the attachments you download, and the sites you visit

  6. I have been seeing A LOT of verified compromises circulating hacker forums because of #BlackCat, #LockBit, #HiveRansomware, #Mallox, #BlackBasta #RoyalRansomware, #BianLian, #CubaRansomware, #BloodyRansomwareGang, #RansomEXX - I'm talking multiple terabytes of data, hundreds of millions of account details, across pretty much every single sector. Most common method of infection? #BusinessEmailCompromise! Be super mindful of the links you click on, the attachments you download, and the sites you visit