The eSentire Blog

TRU Positive/Bulletin

8 M

FakeBat Continues Signed MSIX App Package Abuse

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

8 M

Attempted Delivery of Ducktail and Hawkeyes Payloads Through Drive-by Attacks

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

9 M

Google Firebase Hosting Abused to Deliver Sorillus RAT, Phishing Page

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

8 M

Persistent Connection Established: Nitrogen Campaign Leverages DLL Side-Loading Technique for C2 Communication

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

7 M

OnlyDcRatFans: Malware Distributed Using Explicit Lures of OnlyFans Pages and Other Adult Content

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

27 M

eSentire Threat Intelligence Malware Analysis: Resident Campaign

Since November 2022, the eSentire Threat Response Unit (TRU) has observed the resurgence of what we believe to be…

READ NOW →

TRU Positive/Bulletin

17 M

eSentire Threat Intelligence Malware Analysis: Aurora Stealer

Since December 2022, the eSentire Threat Response Unit (TRU) has observed Aurora Stealer malware infections in the…

READ NOW →

TRU Positive/Bulletin

9 M

GuLoader VBScript Variant Returns with PowerShell Updates

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

AI/ML

8 M

FakeBat Impersonates Midjourney, ChatGPT in Drive-by Cyberattacks

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

7 M

PaperCut Vulnerability Exploited to Deliver Cryptocurrency Miner to Education Sector Customer

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

22 M

eSentire Threat Intelligence Malware Analysis: Vidar Stealer

Vidar Stealer is an information stealer (infostealer) malware that first appeared on hacking forums at the end of…

READ NOW →

TRU Positive/Bulletin

12 M

Threat Actors Using Fake QuickBooks Software to Scam Organizations

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →
Page
of 18