New OpcJacker Malware Distributed via Fake VPN Malvertising

Credit to Author: Jaromir Horejsi| Date: Wed, 29 Mar 2023 00:00:00 +0000

We discovered a new malware, which we named “OpcJacker” (due to its opcode configuration design and its cryptocurrency hijacking ability), that has been distributed in the wild since the second half of 2022.

Read more

Pack it Secretly: Earth Preta’s Updated Stealthy Strategies

Credit to Author: Vickie Su| Date: Thu, 23 Mar 2023 00:00:00 +0000

After months of investigation, we found that several undisclosed malware and interesting tools used for exfiltration purposes were being used by Earth Preta. We also observed that the threat actors were actively changing their tools, tactics, and procedures (TTPs) to bypass security solutions. In this blog entry, we will introduce and analyze the other tools and malware used by the threat actor.

Read more

S4x23 Review Part 3: Healthcare Cybersecurity Sessions

Credit to Author: Kazuhisa Tagaya| Date: Mon, 20 Mar 2023 00:00:00 +0000

This article focuses on the healthcare sector. Over the past two years, the healthcare sector has been in a constant state of emergency due to the COVID-19 pandemic, and as widely reported in the media, it has also been threatened by cyberattacks such as ransomware.

Read more

Emotet Returns, Now Adopts Binary Padding for Evasion

Credit to Author: Ian Kenefick| Date: Mon, 13 Mar 2023 00:00:00 +0000

Following a three-month hiatus, Emotet spam activities resumed in March 2023, when a botnet known as Epoch 4 began delivering malicious documents embedded in Zip files that were attached to the emails.

Read more

S4x23 Review Part 2: Evolving Energy Cybersecurity

Credit to Author: Kazuhisa Tagaya| Date: Mon, 13 Mar 2023 00:00:00 +0000

In this second report on S4x23 held last February, this article introduces the discussion on cyber security in the energy industry, which was one of the topics that attracted attention.

Read more

Examining Ransomware Payments From a Data-Science Lens

Credit to Author: Vladimir Kropotov| Date: Thu, 09 Mar 2023 00:00:00 +0000

In this entry, we discuss case studies that demonstrated how data-science techniques were applied in our investigation of ransomware groups’ ransom transactions, as detailed in our joint research with Waratah Analytics, “What Decision-Makers Need to Know About Ransomware Risk.”

Read more

Expanding Attack Blueprints: 2022 Annual Cybersecurity Report

Credit to Author: Trend Micro Research| Date: Tue, 07 Mar 2023 00:00:00 +0000

In this blog entry, we shine a spotlight on some of the most critical cybersecurity concerns of 2022, which we discuss in full in our annual cybersecurity report, “Rethinking Tactics: 2022 Annual Security Report.”

Read more

S4x23 Review Part 1: What’s New in OT Security

Credit to Author: Kazuhisa Tagaya| Date: Fri, 03 Mar 2023 00:00:00 +0000

This blog introduces discussions from S4x23, the ICS security conference in Miami over several posts. The first installment will cover two topics from the academic interviews.

Read more

Leveraging Data Science to Minimize the Blast Radius of Ransomware Attacks

Credit to Author: Vladimir Kropotov| Date: Thu, 02 Mar 2023 00:00:00 +0000

In this blog entry, we present a case study that illustrates how data-science techniques can be used to gain valuable insights about ransomware groups’ targeting patterns as detailed in our research paper, “What Decision-Makers Need to Know About Ransomware Risk.”

Read more