• Home
    • News
  • Individuals
    • Students
    • Senior Nevadans
    • Parents & Educators
  • Business
    • Small Business
    • Medium To Large Business
    • Leadership
  • Resources
  • About Us
    • Sponsors
CybersafeNV - CybersafeNV Website

Category: SANS Full Feed


  • Python RAT with a Nice Screensharing Feature, (Tue, Nov 5th)
    November 5, 2024

    Python RAT with a Nice Screensharing Feature, (Tue, Nov 5th)

    While hunting, I found another interesting Python RAT in the wild. This is not brand new because the script was released two years ago[1]. The script I found is based on the same tool and still has a low VT score: 3/64 (SHA256:1281b7184278f2a4814b245b48256da32a6348b317b83c440008849a16682ccb)[2]. The RAT has a lot of features to control the victim’s computer: remnux@remnux:/MalwareZoo/20241021$…

    Read More

  • November 5, 2024

    ISC Stormcast For Tuesday, November 5th, 2024 https://isc.sans.edu/podcastdetail/9208, (Tue, Nov 5th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    Read More

  • Analyzing an Encrypted Phishing PDF, (Mon, Nov 4th)
    November 4, 2024

    Analyzing an Encrypted Phishing PDF, (Mon, Nov 4th)

    Once in a while, I get a question about my pdf-parser.py tool, not able to decode strings and streams from a PDF document. And often, I have the answer without looking at the PDF: it’s encrypted. PDF documents can be encrypted, and what’s special about encrypted PDFs, is that the structure of the PDF document…

    Read More

  • November 4, 2024

    ISC Stormcast For Monday, November 4th, 2024 https://isc.sans.edu/podcastdetail/9206, (Mon, Nov 4th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    Read More

  • November 2, 2024

    qpdf: Extracting PDF Streams, (Sat, Nov 2nd)

    In diary entry “Analyzing PDF Streams” I answer a question asked by a student of Xavier: “how can you export all streams of a PDF?”. I explained how to do this with my pdf-parser.py tool. I recently found another method, using the open-source tool qpdf. Since version 11, you can extract streams with qpdf. If…

    Read More

  • October 31, 2024

    ISC Stormcast For Thursday, October 31st, 2024 https://isc.sans.edu/podcastdetail/9204, (Thu, Oct 31st)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    Read More

  • October 2024 Activity with Username chenzilong, (Thu, Oct 31st)
    October 31, 2024

    October 2024 Activity with Username chenzilong, (Thu, Oct 31st)

    After reviewing the Top 10 Not So Common SSH Usernames and Passwords [1] published by Johannes 2 weeks ago, I noticed activity by one in his list that we don’t really know what it is. Beginning 12 October 2024, my DShield sensor started storing one of the usernames mentioned in his diary that I had…

    Read More

  • Scans for RDP Gateways, (Wed, Oct 30th)
    October 30, 2024

    Scans for RDP Gateways, (Wed, Oct 30th)

    RDP is one of the most prominent entry points into networks. Ransomware actors have taken down many large networks after initially entering via RDP. Credentials for RDP access are often traded by “initial access brokers”. I noticed today an uptick in scans for “/RDWeb/Pages/en-US/login.aspx” . This is often used to expose RDP gateways, and there…

    Read More

  • October 30, 2024

    ISC Stormcast For Wednesday, October 30th, 2024 https://isc.sans.edu/podcastdetail/9202, (Wed, Oct 30th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    Read More

  • October 29, 2024

    ISC Stormcast For Tuesday, October 29th, 2024 https://isc.sans.edu/podcastdetail/9200, (Tue, Oct 29th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    Read More

←Previous Page
1 … 57 58 59 60 61 62
Next Page→

Our Sponsors

Quick Links

About Us
Individuals
Business
Resources

Contact

Twitter
Facebook
LinkedIn

Copyright © 2022 Cyber Safe NV. All Rights Reserved.