The eSentire Blog

TRU Positive/Bulletin

6 M

NetSupport Manager - Insecure by Default

NetSupport Manager exposes hundreds of machines to remote takeover Adversaries don’t work 9-5 and neither do we.…

READ NOW →

TRU Positive/Bulletin

9 M

OneNote Payload Smuggling: Multiple Threats Leverage OneNote to Deliver Malware

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

8 M

IcedID Malware Shifts Its Delivery Strategy

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

10 M

eSentire Threat Intelligence Malware Analysis: Raspberry Robin

Since May 2022, eSentire’s Threat Response Unit (TRU) has observed 11 cases of Raspberry Robin infections.…

READ NOW →

TRU Positive/Bulletin

7 M

Gootloader Malware Leads to Cobalt Strike and Hand-on-Keyboard Activity

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

Threat Intelligence

3 M

Tactical Experts Driving Success for Ransomware Gangs

Ten, twenty years ago, when you heard the word ‘ransomware’ it was because you (or someone you know) clicked a…

READ NOW →

Threat Response Unit

11 M

Hackers Exploit Fortinet Devices to Spread Ransomware within Corporate Environments, Warns eSentire

Summary In mid and late November 2022, eSentire detected and shut down hackers attempting to infect two of its…

READ NOW →

TRU Positive/Bulletin

8 M

Recent FakeBat Activity Observed in December 2022

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

4 M

FortiOS - Authentication Bypass CVE-2022-40684

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

19 M

eSentire Threat Intelligence Malware Analysis: Redline Stealer

Redline Stealer is one of the most popular stealers being sold and used by cybercriminals. The command and control…

READ NOW →

TRU Positive/Bulletin

6 M

GootLoader Striking with a New Infection Technique

On December 2, 2022, one of our 24/7 SOC Cyber Analysts escalated an incident involving the GootLoader malware at…

READ NOW →

TRU Positive/Bulletin

10 M

Disrupting an Active Ransomware Attack Over the Course of Hours

Recently, eSentire’s Security Operations Center responded to a ransomware attack in progress. The attack was…

READ NOW →
Page
of 19