article thumbnail

Old Vulnerabilities, New Attacks: Encrypted MalDocs Evade Detection

Penetration Testing

However, a recent investigation by Check Point... The post Old Vulnerabilities, New Attacks: Encrypted MalDocs Evade Detection appeared first on Penetration Testing.

article thumbnail

Cobalt Strike, a penetration testing tool popular among criminals

Malwarebytes

Metasploit—probably the best known project for penetration testing—is an exploit framework, designed to make it easy for someone to launch an exploit against a particular vulnerable target. Cobalt Strike Beacon provides encrypted communication with the C&C server to send information and receive commands.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Malware exploits undocumented Google OAuth endpoint to regenerate Google cookies

Security Affairs

Subsequently, other malware integrated the exploit, including Rhadamanthys, Risepro, Meduza , Stealc Stealer and recently the White Snake. The researchers discovered that the malware targets Chrome’s token_service table of WebData to extract tokens and account IDs of chrome profiles logged in. iPhone/15.7.4

Malware 129
article thumbnail

NovaLdr: Threadless Module Stomping In Rust

Penetration Testing

NovaLdr NovaLdr is a Threadless Module Stomping written in Rust, designed as a learning project while exploring the world of malware development. It uses advanced techniques like indirect syscalls and string encryption to achieve... The post NovaLdr: Threadless Module Stomping In Rust appeared first on Penetration Testing.

article thumbnail

FAUST Ransomware Strikes: The Hidden Dangers Inside Office Documents

Penetration Testing

This malicious software, designed to encrypt files on a victim’s computer, demands a ransom in exchange for the decryption key,... The post FAUST Ransomware Strikes: The Hidden Dangers Inside Office Documents appeared first on Penetration Testing.

article thumbnail

Kaspersky Labs Uncovers ShrinkLocker Ransomware Exploiting Microsoft’s BitLocker

Penetration Testing

In a recent analysis, Kaspersky Lab’s experts have exposed a new ransomware threat named ShrinkLocker, which cleverly exploits Microsoft’s built-in BitLocker encryption tool to hold corporate data hostage.

article thumbnail

Evil Ant Ransomware Exposed: Flaw Offers Recovery Hope

Penetration Testing

” While this ransomware can successfully encrypt a victim’s files, serious flaws in its design offer hope for recovery, even... The post Evil Ant Ransomware Exposed: Flaw Offers Recovery Hope appeared first on Penetration Testing.