Remove weekly-update-228
article thumbnail

Weekly Update 228

Troy Hunt

Ok, that's a bit wordy but the Exodus thing earlier today was frustrating, not because a screen cap of an alleged breach notice was indistinguishable from a phish, but because of the way some people chose to react when I shared the notice. Watch today's vid for an explanation on that one, there's that and a bunch more this week.

article thumbnail

Mystic Stealer

Security Boulevard

On May 20, the Mystic Stealer seller posted updates that include loader functionality and a persistence capability to forums as shown in Figure 1. update with loader support As previously noted, there are several anti-analysis and evasion features additionally present in Mystic Stealer: Binary expiration. 228:13219 135.181.47[.]95:13219

article thumbnail

MoonBounce: the dark side of UEFI firmware

SecureList

As a safety measure against this attack and similar ones, it is recommended to update the UEFI firmware regularly and verify that BootGuard, where applicable, is enabled. 228 – Go malware. Scheduling code used in MoonBounce’s user-mode stager. Domains and IPs. mb.glbaitech[.]com com – MoonBounce. ns.glbaitech[.]com

Firmware 144