Malspam and CVE-2017-8759 September 18, 2017 On September 12th FireEye security researchers disclosed information about CVE-2017-8759, a SOAP... Read More
Monero miners: A NetWitness perspective September 14, 2017 In our introductory post to Cryptocurrency, we mentioned that one of the threats to organizations... Read More
Malspam and CVE-2017-0199 August 31, 2017 Over the past few weeks, RSA FirstWatch noticed an uptick of malspam trying to exploit... Read More
Malspam delivers NanoBot 8-22-2017 August 25, 2017 Malspam activity was noted on August 22nd 2017 delivering NanoBot malware via a 'detailed... Read More
Malspam delivers Xtreme RAT 8-1-2017 August 2, 2017 Malspam activity was noted on August 1st 2017 delivering an Xtreme RAT variant. Xtreme RAT is a... Read More
Malspam delivers BEBLOH 7-20-2017 July 21, 2017 Malspam activity was noted on July 20 2017 delivering BEBLOH banking trojan. BEBLOH has been around... Read More
Malspam delivers AgentTesla Spyware July 14, 2017 During the first week of July 2017, malspam activity was observed delivering AgentTesla malware, a... Read More
Malspam delivers Zyklon malware June 22, 2017 For the past few weeks, there has been an increase in malspam delivering Zyklon malware. Zyklon is... Read More
Hunting pack use case: RedLeaves malware May 3, 2017 On April 27, 2017 The United States Computer Emergency Readiness Team (US-CERT) released an alert... Read More
Detecting Dreambot variants using RSA NetWitness April 4, 2017 Ursnif, also known as Gozi and ISFB, is a banking Trojan that primarily targets English-speaking... Read More