Topic: powershell scripting
-
EDR Exploited for Stealthy Ransomware Attacks
Attackers are exploiting trusted security tools like EDR software and Windows utilities to deploy malware with stealth and persistence, shifting from mass phishing to more sophisticated methods. A specific attack involved social engineering to execute malicious commands, sideloading a rogue DLL v...
Read More » -
Termite Ransomware Tied to ClickFix CastleRAT Attacks
The Velvet Tempest cybercrime group uses a social engineering technique called ClickFix, tricking users into executing a malicious command that initiates an infection chain leveraging legitimate Windows tools to deploy malware like CastleRAT and DonutLoader. Initial access is achieved through mal...
Read More »