Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ Turla Hacker Group Steals Antivirus Logs To See If Its Malware Was Detected

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Turla Hacker Group Steals Antivirus Logs To See If Its Malware Was Detected


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: it.slashdot.org

An anonymous reader quotes a report from ZDNet: Security researchers from ESET have discovered new attacks carried out by Turla, one of Russia's most advanced state-sponsored hacking groups. The new attacks have taken place in January 2020. ESET researchers say the attacks targeted three high-profile entities, such as a national parliament in the Caucasus and two Ministries of Foreign Affairs in Eastern Europe. Targets could not be identified by name due to national security reasons. [...] The ComRAT malware, also known as Agent.BTZ, is one of Turla's oldest weapons, and the one they used to siphon data from the Pentagon's network in 2008. The tool has seen several updates across the years, with new versions discovered in 2014 and 2017, respectively. The latest version, known as ComRAT v4, was first seen in 2017, however, in a report published today, ESET says they've spotted a variation of ComRAT v4 that includes two new features, such as the ability to exfiltrate antivirus logs and the ability to control the malware using a Gmail inbox. The first of these features is the malware's ability to collect antivirus logs from an infected host and upload it to one of its command and control servers. The exact motives of a hacker group will always remain unclear, but Matthieu Faou, the ESET researcher who analyzed the malware, told ZDNet that Turla operators might be collecting antivirus logs to "allow them to better understand if and which one of their malware sample was detected." The belief is that if Turla operators see a detection, they can then tweak their malware and avoid future detections on other systems, where they can then operate undetected.

Read more of this story at Slashdot.

...



๐Ÿ“Œ Turla hacker group steals antivirus logs to see if its malware was detected


๐Ÿ“ˆ 94.17 Punkte

๐Ÿ“Œ Turla Hacker Group Steals Antivirus Logs To See If Its Malware Was Detected


๐Ÿ“ˆ 94.17 Punkte

๐Ÿ“Œ How Does an Investigator Overcome Malware/an Attacker That Deletes its Activity and Replaces it With Deleted/Overwritten Logs, or Fake Logs?


๐Ÿ“ˆ 35.02 Punkte

๐Ÿ“Œ Iran? More like Ivan: Brit and US spies say they can see through Turla hacking group's facade


๐Ÿ“ˆ 33.85 Punkte

๐Ÿ“Œ Iran? More like Ivan: Brit and US spies say they can see through Turla hacking group's facade


๐Ÿ“ˆ 33.85 Punkte

๐Ÿ“Œ 10/25/19 Turla APT Group Hacks OilRig APT Group | AT&T ThreatTraq


๐Ÿ“ˆ 31.38 Punkte

๐Ÿ“Œ Mac malware-for-hire steals passwords and cryptocoins, sends โ€œcrime logsโ€ via Telegram


๐Ÿ“ˆ 29.78 Punkte

๐Ÿ“Œ CallerSpy Android Malware Advertised as Chat App Steals Call Logs, SMS, Contacts & Files on the Infected Device


๐Ÿ“ˆ 29.78 Punkte

๐Ÿ“Œ Turla APT group adds Topinambour Trojan to its arsenal


๐Ÿ“ˆ 29.52 Punkte

๐Ÿ“Œ AcidBox: Rare Malware Repurposing Turla Group Exploit Targeted Russian Organizations


๐Ÿ“ˆ 28.84 Punkte

๐Ÿ“Œ Russia-Linked "Turla" Group Uses New JavaScript Malware


๐Ÿ“ˆ 28.84 Punkte

๐Ÿ“Œ Espionage Group Turla Tweaks Carbon Backdoor Malware with New Variants


๐Ÿ“ˆ 28.84 Punkte

๐Ÿ“Œ Russian hacking group Turla alters browser components to install malware


๐Ÿ“ˆ 28.84 Punkte

๐Ÿ“Œ Turla Group Updated ComRAT Malware to Use Gmail web Interface for Command and Control


๐Ÿ“ˆ 28.84 Punkte

๐Ÿ“Œ Turla: Russische Hacker sollen iranische Hacker gehackt haben


๐Ÿ“ˆ 27.58 Punkte

๐Ÿ“Œ Hacker-Gruppe Turla nutzt Instagram zum Aktivieren ihrer Malware


๐Ÿ“ˆ 26.94 Punkte

๐Ÿ“Œ DeathStalker Hacker Groupโ€™s New PowerPepper Malware Evade Antivirus Detection to Bypass Windows


๐Ÿ“ˆ 25.55 Punkte

๐Ÿ“Œ 7 VPNs that leaked their logs โ€“ the logs that โ€œdidnโ€™t existโ€


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ API Calls Expose 770M Logs With GitHub, AWS, Docker Tokens In Travis CI Logs


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ Using Kubectl Logs | How to view Kubernetes Pod Logs?


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ FBI Arrests A Cyberstalker After Shady "No-Logs" VPN Provider Shared User Logs


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ Kubectl Logs Tail | How to Tail Kubernetes Logs


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ NGINX Logging | Configuring Error and Access Logs, Sending Nginx Logs to Syslog & more


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ No Logs VPN 2019: Best VPNs That Keep No Logs


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ Stealer logs #infosecnews #cybersecurity #logs #microsoft #infosec


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ Logs and more logs, who has time to read them ?


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ EDRaser - Tool For Remotely Deleting Access Logs, Windows Event Logs, Databases, And Other Files


๐Ÿ“ˆ 25.12 Punkte

๐Ÿ“Œ Hacker steals โ‚ฌ10,000 from bank, donates to Kurdish group


๐Ÿ“ˆ 25.01 Punkte

๐Ÿ“Œ Hacker steals โ‚ฌ10,000 from bank, donates to Kurdish group


๐Ÿ“ˆ 25.01 Punkte

๐Ÿ“Œ Hacker Steals Money from Bank and Donates $11,000 to Anti-ISIS Group


๐Ÿ“ˆ 25.01 Punkte

๐Ÿ“Œ Hacker Steals Money from Bank and Donates $11,000 to Anti-ISIS Group


๐Ÿ“ˆ 25.01 Punkte

๐Ÿ“Œ Russian hacker group hacks Iranian hacker group


๐Ÿ“ˆ 24.79 Punkte











matomo