The eSentire Blog

TRU Positive/Bulletin

13 M

Technical Analysis of DarkVNC

DarkVNC is a hidden utility based on the Virtual Network Computing (VNC) technology, initially promoted on an…

READ NOW →

TRU Positive/Bulletin

5 M

Coinminer on a Vulnerable Tomcat Server

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

5 M

SmartApeSG Delivering NetSupport RAT

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

7 M

The Rising Threat of Pikabot

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

11 M

WorkersDevBackdoor Delivered via Malvertising

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

9 M

Ducktail and Peeling the Layers of PowerShell

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

10 M

PhantomControl returns with Ande Loader and SwaetRAT

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

6 M

"NextPHP" Phishing Campaign

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

9 M

DanaBot's Latest Move: Deploying Latrodectus

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

6 M

Unveiling Parallax RAT: A Journey from Infection to Lateral Movement

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

Managed Risk Programs

6 M

The Rise of QR Code Phishing Attacks and Best Practices for Interacting with QR Codes

Since the onset of the COVID-19 pandemic, most businesses across a wide range of industries have begun using Quick…

READ NOW →

TRU Positive/Bulletin

21 M

eSentire Threat Intelligence Malware Analysis: SolarMarker: To Jupyter and Back

Key Takeaways SolarMarker uses process injection to run the hVNC and data staging payload.The actors behind…

READ NOW →
Page
of 19