The eSentire Blog

TRU Positive/Bulletin

15 M

eSentire Threat Intelligence Malware Analysis: Icarus Stealer

First introduced in July 2022, Icarus Stealer is an infostealer malware that uses an hVNC capability so that the…

READ NOW →

TRU Positive/Bulletin

5 M

NetSupport Manager - Insecure by Default

NetSupport Manager exposes hundreds of machines to remote takeover Adversaries don’t work 9-5 and neither do we.…

READ NOW →

TRU Positive/Bulletin

8 M

OneNote Payload Smuggling: Multiple Threats Leverage OneNote to Deliver Malware

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

7 M

IcedID Malware Shifts Its Delivery Strategy

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

9 M

eSentire Threat Intelligence Malware Analysis: Raspberry Robin

Since May 2022, eSentire’s Threat Response Unit (TRU) has observed 11 cases of Raspberry Robin infections.…

READ NOW →

TRU Positive/Bulletin

5 M

Gootloader Malware Leads to Cobalt Strike and Hand-on-Keyboard Activity

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

6 M

Recent FakeBat Activity Observed in December 2022

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

3 M

FortiOS - Authentication Bypass CVE-2022-40684

Adversaries don’t work 9-5 and neither do we. At eSentire, our 24/7 SOCs are staffed with Elite Threat Hunters and…

READ NOW →

TRU Positive/Bulletin

18 M

eSentire Threat Intelligence Malware Analysis: Redline Stealer

Redline Stealer is one of the most popular stealers being sold and used by cybercriminals. The command and control…

READ NOW →

TRU Positive/Bulletin

5 M

GootLoader Striking with a New Infection Technique

On December 2, 2022, one of our 24/7 SOC Cyber Analysts escalated an incident involving the GootLoader malware at…

READ NOW →

TRU Positive/Bulletin

8 M

Disrupting an Active Ransomware Attack Over the Course of Hours

Recently, eSentire’s Security Operations Center responded to a ransomware attack in progress. The attack was…

READ NOW →

TRU Positive/Bulletin

5 M

Intruder Deploys Medusa Unlocker instead of Medusa Locker in Attempted Medusa Ransomwar...

Recently, a hands-on intruder immediately began to attempt lateral movement and gain credential access upon…

READ NOW →
Page
of 14