Winnti APT group docks in Sri Lanka for new campaign

Categories: Threat Intelligence

Tags: Winnti

Tags: APT

Tags: China

Tags: Sri Lanka

Tags: India

Tags: Keyplug

Tags: malware

Tags: dropbox

Tags: C2

Tags: DBoxAgent

In this research paper, we document a new campaign we attribute to the Winnti APT group. The victims are located in Sri Lanka at a point in time where the country is going through economic hardship while China makes headlines for docking on of its special vessels there.

(Read more…)

The post Winnti APT group docks in Sri Lanka for new campaign appeared first on Malwarebytes Labs.

Read more

Exploits and TrickBot disrupt manufacturing operations

Categories: Threat Intelligence

September 2021 saw a huge spike of exploit detections against the manufacturing industry, with a distributed spread between California, Florida, Ohio, and Missouri. This is combined with heavy detections of unseen malware, identified through our AI engine, spiking in May as well as September 2021.

(Read more…)

The post Exploits and TrickBot disrupt manufacturing operations appeared first on Malwarebytes Labs.

Read more

Business Services industry targeted across the country for backdoor access

Categories: Threat Intelligence

High detections of hacking tools for the Business Services industry shows that attackers likely sought to infect businesses and install backdoors for future access to their customers.

(Read more…)

The post Business Services industry targeted across the country for backdoor access appeared first on Malwarebytes Labs.

Read more

Summer of exploitation leads to healthcare under fire

Categories: News

Categories: Threat Intelligence

Tags: Healthcare

Tags: Medical

Read about trends in cyberattacks in the Healthcare and Medical industry, as well as our recommendations for helping to secure your healthcare organization.

(Read more…)

The post Summer of exploitation leads to healthcare under fire appeared first on Malwarebytes Labs.

Read more