cm0002 ( @cm0002@piefed.world ) to cybersecurity@infosec.pubEnglish · 4 months agoSoupDealer Malware Bypasses Every Sandbox, AV's and EDR/XDR in Real-World Incidentscybersecuritynews.comexternal-linkmessage-square7linkfedilinkarrow-up123
arrow-up123external-linkSoupDealer Malware Bypasses Every Sandbox, AV's and EDR/XDR in Real-World Incidentscybersecuritynews.com cm0002 ( @cm0002@piefed.world ) to cybersecurity@infosec.pubEnglish · 4 months agomessage-square7linkfedilink
minus-square Hirom ( @Hirom@beehaw.org ) linkfedilinkarrow-up2·4 months agoAnd it downloads Tor to connect to C2. So it’s a machine with Internet access AND without security mesures. So it might be a target with poor IT. A windows machine shouldn’t be left without AV, especially if it has Internet access.
And it downloads Tor to connect to C2. So it’s a machine with Internet access AND without security mesures.
So it might be a target with poor IT. A windows machine shouldn’t be left without AV, especially if it has Internet access.