Threat Hunting Case Study: Uncovering FIN7
FIN7 is one of the most persistent and capable financially motivated threat actor groups. Here's how to threat hunt for signs of a FIN7 intrusion.
Hunting for RansomHub and Antivirus Killers
Threat actors always seek new techniques and tools that make it easier to infiltrate an environment, persist, and perform malicious activity. One of the obstacles to this is antivirus or Endpoint Detection and Response (EDR)....
A Briefing on Malware Crypting Services
Crypting malware hides it from security tools. There’s rising demand for crypter services. Here’s a look at this underground market.
France vs. Telegram: What Does it Mean for Cybercrime?
France indicted Telegram CEO Pavel Durov for an alleged failure to cooperate to stop criminal activity on the platform. Intel 471 analyzes how this may affect cybercriminal use of Telegram, which is rising.
How to Comfortably Share Threat Intel with ISACs
In this Studio 471, Sydney Jones, Head of Threat Intelligence at CLS Group, discusses how she has set up several productive programs to share threat intelligence with Information Sharing and Analysis Centers (ISACs), helping ...
Threat Hunting Case Study: Tracking Down GootLoader
GootLoader is malware used to gain initial access to computers for exploitation by threats such as ransomware. In this case study, we describe how to use the HUNTER platform to threat hunt GootLoader infections.
Intel 471 makes industry-leading announcements at Black Hat USA 2024
Intel 471 made two groundbreaking announcements at Black Hat that drive innovation in cybersecurity and elevate CTI practices across the industry.
Cybercrime Exposed Podcast: Tank
In 2006, a new type of malware appeared on the scene. Its name was Zeus. It was enormously profitable for its cybercriminal developers, who used it to steal tens of millions of dollars from businesses and organizations of all...
MacOS is Increasingly Targeted by Threat Actors
Malware targeting macOS is on the rise, a result of increasing threat actor interest and more organizations using Apple products.
Threat Actors Target Gift Card Issuing Systems
ATLAS LION is a threat actor group that uses phishing to gain access to gift-card issuing systems and then generates fraudulent cards.