Marc's Avatar

Marc

@ctimarc.bsky.social

49 Followers  |  79 Following  |  1 Posts  |  Joined: 27.10.2023  |  1.5013

Latest posts by ctimarc.bsky.social on Bluesky

Post image

Since the apparition of the #Interlock ransomware, the Sekoia #TDR team observed its operators evolving, improving their toolset (#LummaStealer and #BerserkStealer), and leveraging new techniques such as #ClickFix to deploy the ransomware payload.

blog.sekoia.io/interlock-ra...

16.04.2025 09:13 โ€” ๐Ÿ‘ 2    ๐Ÿ” 5    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Preview
RATatouille: Cooking Up Chaos in the I2P Kitchen Discover the challenges of ClickFix12 and the newly identified I2PRAT. Uncover the advanced techniques employed by this multi-stage RAT.

New paperโคต๏ธ

blog.sekoia.io/ratatouille-...

11.02.2025 13:58 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Sr Technical Threat Researcher - Sekoia.io - CDI - Tรฉlรฉtravail total Sekoia.io recrute un(e) Sr Technical Threat Researcher !

๐ŸšจTo strengthen the #investigation and #detection capabilities of the Sekoia.io Threat Detection & Research (TDR) team, we are looking for a Senior Technical Threat Researcher!

www.welcometothejungle.com/fr/companies...

#CTI #DetectionEngineering

29.01.2025 13:59 โ€” ๐Ÿ‘ 5    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Justice Department and FBI Conduct International Operation to Delete Malware Used by China-Backed Hackers

Suite PlugX: 4200 ordinateurs amรฉricains dรฉsinfectรฉs grรขce ร  l'entreprise Sekoia et la justice franรงaise, annonce le FBI. www.justice.gov/usao-edpa/pr...

14.01.2025 16:21 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Smart move !

18.12.2024 19:43 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Ransomware-driven data exfiltration: techniques and implications Introduction This report focuses on the exfiltration techniques leveraged by ransomware and extortion groups in lucrative campaigns. It aims to provide a comprehensive analysis of the techniques andโ€ฆ

๐ŸŽฏ Ransomware-driven data #exfiltration: techniques and implications

Our new #TDR report focuses on the exfiltration techniques leveraged by #ransomware and #extortion groups.

https://buff.ly/415o0ry

#ThreatIntelligence #Detection

27.11.2024 10:28 โ€” ๐Ÿ‘ 11    ๐Ÿ” 8    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Preview
Helldown Ransomware: an overview of this emerging threat Comprehensive Analysis of Helldown: Tactics, Techniques, and Procedures (TTPs) and Exploitation of Zyxel Vulnerabilities %


New Helldown ransomware targets Windows and Linux systems, uses Zyxel firewall exploits for initial access

blog.sekoia.io/helldown-ran...

19.11.2024 10:43 โ€” ๐Ÿ‘ 22    ๐Ÿ” 9    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Unmasking the latest trends of the Financial Cyber Threat Landscape This report aims at depicting recent trends in cyber threats impacting the financial sector worldwide. It focuses on principal tactics, techniques and procedures used by lucrative and state-sponsored ...

๐Ÿฆ Our latest report provides insights on the cyber threats impacting the #financial sector in 2023. We analysed the trends in lucrative and state-sponsored ecosystems and outlined the most notable evolutions. For more details, check out our blog post: blog.sekoia.io/unmasking-th...

23.11.2023 12:10 โ€” ๐Ÿ‘ 5    ๐Ÿ” 3    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

#DarkGate gained popularity among threat actors (e.g: #TA577, #DuckTail), our #RE analysis details the internals of the malware, how it implements technique to evade defenses: Union-API, token theft via UpdateProcThreadAttribute, APC injection.

blog.sekoia.io/darkgate-int...

20.11.2023 13:02 โ€” ๐Ÿ‘ 5    ๐Ÿ” 4    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Game Over: gaming community at risk with information stealers This report was originally published for our customers on 26 October 2023. The world of online gaming, a thriving global community of millions, has become an enticing target for malicious actors seeki...

๐ŸŽฎ We analyzed an ongoing campaign targeting online gamers. Multiple malware families are delivered through fake video game websites such as #Epsilon, #Doenerium, #BByStealer, and #NovaSentinel.

blog.sekoia.io/game-over-ga...

#CTI #infostealer

13.11.2023 10:02 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@ctimarc is following 19 prominent accounts