Source |
Security Affairs |
Identifiant |
3437277 |
Date de publication |
2021-09-28 07:26:24 (vue: 2021-09-28 08:06:26) |
Titre |
Russia-linked Nobelium APT group uses custom backdoor to target Windows domains (Recyclage) |
Texte |
Microsoft discovered new custom malware, dubbed FoggyWeb, used by the Nobelium cyberespionage group to implant backdoor in Windows domains. Microsoft Threat Intelligence Center (MSTIC) researchers have discovered a new custom malware, dubbed FoggyWeb used by the Nobelium APT group to deploy additional payloads and steal sensitive info from Active Directory Federation Services (AD FS) servers. […]
|
Envoyé |
Oui |
Condensat |
active additional apt backdoor center custom cyberespionage deploy directory discovered domains dubbed federation foggyweb from group have implant info intelligence linked malware microsoft mstic new nobelium payloads researchers russia sensitive servers services steal target threat used uses windows |
Tags |
Threat
|
Stories |
|
Notes |
|
Move |
|
Source |
Bleeping Computer |
Identifiant |
3436531 |
Date de publication |
2021-09-27 16:03:47 (vue: 2021-09-28 02:05:42) |
Titre |
Microsoft: Nobelium uses custom malware to backdoor Windows domains (Recyclage) |
Texte |
Microsoft has discovered new malware used by the Nobelium hacking group to deploy additional payloads and steal sensitive info from Active Directory Federation Services (AD FS) servers. [...] |
Envoyé |
Oui |
Condensat |
active additional backdoor custom deploy directory discovered domains federation from group hacking has info malware microsoft microsoft: new nobelium payloads sensitive servers services steal used uses windows |
Tags |
Malware
|
Stories |
|
Notes |
|
Move |
|