Remove 11
Remove 2017 Remove Analysis Remove Military Remove Passwords
article thumbnail

Cyberwarfare: A deep dive into the latest Gamaredon Espionage Campaign

Security Affairs

Security experts from Yoroy-Cybaze ZLab have conducted a detailed analysis of an implant used by the Gamaredon APT group in a recent campaign. It is distributed in a spear-phishing campaign with a weaponized office document that appears to be designed to lure military personnel. . Technical Analysis. Introduction.

article thumbnail

Ransomware Protection in 2021

eSecurity Planet

Ransomware frequently contains extraction capabilities that can steal critical information like usernames and passwords, so stopping ransomware is serious business. Forensic Analysis. And since you cannot expect good faith negotiations, there is no guarantee the attacker supplies the key post-payment. Adaptive Monitoring and Tagging.

article thumbnail

APT28 and Upcoming Elections: evidence of possible interference

Security Affairs

Technical Analysis. Figure 2: password required to view and modify macros on document. The first peculiarity of the malicious document is the protected macro, in fact, when the user tries to read it immediately shows a message box asking for password. Further detail about AMSI have been described in a previous analysis report.