New GoGRPC malware used in Microsoft Teams vishing attacks
After gaining access, the attackers use PowerShell scripts to identify antivirus and endpoint detection tools, collect system information and other data.
3 min read
Cybersecurity Help is a global vulnerability intelligence provider. We monitor vulnerabilities in software from 60,000+ vendors and help customers prevent potential data breaches by addressing them proactively.
Request DemoAfter gaining access, the attackers use PowerShell scripts to identify antivirus and endpoint detection tools, collect system information and other data.
3 min readThe attackers often install more than one RMM tool on the same device to have backup access if one program is detected and removed.
2 min readThe activity is similar to past router-based FrostArmada attacks linked to the Russian hacking group APT28, also known as Fancy Bear.
2 min readThe exposed directories also contained Windows and Linux versions of a previously undocumented Go-based malware implant called Hades.
3 min readIn brief: The UTA0533 group caught exploiting SonicWall 0days, Russian hackers abuse a critical Zimbra flaw, and more.
13 min read