home.social

#threatresearch — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #threatresearch, aggregated by home.social.

  1. New.

    "The standout feature of this toolkit is its depth of integration with the target environment. The ted backdoor is compiled as part of the victim’s existing HAProxy version 2.8.12. It uses its native filter API, internal memory pools, event scheduler, and process management infrastructure to intercept traffic and hide from monitoring, while genuine load balancing traffic operates as expected."

    Rapid7: DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors rapid7.com/blog/post/tr-dprk-a @Rapid7Official #infosec #cybercrime #threatresearch #Linux

  2. New.

    "The standout feature of this toolkit is its depth of integration with the target environment. The ted backdoor is compiled as part of the victim’s existing HAProxy version 2.8.12. It uses its native filter API, internal memory pools, event scheduler, and process management infrastructure to intercept traffic and hide from monitoring, while genuine load balancing traffic operates as expected."

    Rapid7: DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors rapid7.com/blog/post/tr-dprk-a @Rapid7Official #infosec #cybercrime #threatresearch #Linux

  3. New.

    "The standout feature of this toolkit is its depth of integration with the target environment. The ted backdoor is compiled as part of the victim’s existing HAProxy version 2.8.12. It uses its native filter API, internal memory pools, event scheduler, and process management infrastructure to intercept traffic and hide from monitoring, while genuine load balancing traffic operates as expected."

    Rapid7: DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors rapid7.com/blog/post/tr-dprk-a @Rapid7Official #infosec #cybercrime #threatresearch #Linux

  4. New.

    "The standout feature of this toolkit is its depth of integration with the target environment. The ted backdoor is compiled as part of the victim’s existing HAProxy version 2.8.12. It uses its native filter API, internal memory pools, event scheduler, and process management infrastructure to intercept traffic and hide from monitoring, while genuine load balancing traffic operates as expected."

    Rapid7: DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors rapid7.com/blog/post/tr-dprk-a @Rapid7Official #infosec #cybercrime #threatresearch #Linux

  5. New.

    "The standout feature of this toolkit is its depth of integration with the target environment. The ted backdoor is compiled as part of the victim’s existing HAProxy version 2.8.12. It uses its native filter API, internal memory pools, event scheduler, and process management infrastructure to intercept traffic and hide from monitoring, while genuine load balancing traffic operates as expected."

    Rapid7: DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors rapid7.com/blog/post/tr-dprk-a @Rapid7Official #infosec #cybercrime #threatresearch #Linux

  6. ⚠️ Smishing alert for Greek citizens. 💳 🚨

    Scammers are pushing fake AADE (Independent Authority for Public Revenue) “unpaid taxes” SMS that lead to cloned payment pages designed to steal credit‑card info. If a text suddenly demands urgent payment, treat it like a pop‑up from nowhere—don’t click, don’t trust, don’t pay. Share to protect others.

    mycargr[.]com
    aadcar[.]com
    aadgee[.]com
    aadgre[.]com

    #CyberThreatIntel #Infoblox #DNS #ThreatResearch #phishing #smishing #Cybercrime #AADE #Greece

  7. Home from #LABScon23 and I know I’ll be thinking about many of these talks and the great conversations for days to come. Getting to talk a bit about the Internet presence and security of #MFT tools like #MOVEit and #GoAnywhere was an added bonus 📂☺️🗄️

    #threatResearch #security #infosec