#CISA Updates #BRICKSTORM Backdoor Malware Analysis Report
#CISA Updates #BRICKSTORM Backdoor Malware Analysis Report
CISA, NSA, and Canadian Cyber Centre update #Brickstorm analysis with new Rust-based variants
Joint malware analysis report on #Brickstorm backdoor
https://www.cyber.gc.ca/en/news-events/joint-malware-analysis-report-brickstorm-backdoor
CISA and Partners Release Update to Malware Analysis Report #BRICKSTORM Backdoor
„#Brickstorm“-Hintertür in #VMwarevSphere: Warnung vor Angriff aus #China 🇨🇳 | Security https://www.heise.de/news/Brickstorm-Hintertuer-in-VMware-vSphere-Warnung-vor-Angriff-aus-China-11103648.html #VMware #vSphere
BRICKSTORM Backdoor
"The Cybersecurity and Infrastructure Security Agency (CISA) analyzed eight BRICKSTORM samples obtained from victim organizations. BRICKSTORM is a custom Executable and Linkable Format (ELF) Go-based backdoor. "
MISP standard and STIX files available at the following location:
🔗 https://cti-transmute.org/convert/detail/30
#backdoor #cti #brickstorm #malware #threatintel #threatintelligence #cybersecurity
Selon un rapport TLP:CLEAR publié par la Cybersecurity and Infrastructure Security Agency (CISA), la National Security Agency (NSA) et le Centre canadien pour la cybersécurité, des acteurs étatiques de la RPC utilisent le malware BRICKSTORM pour maintenir une persistence de longue durée dans des environnements VMware vSphere (vCenter/ESXi) et aussi des environnements Windows. L’analyse couvre 8 échantillons et inclut des IOCs, des règles YARA et Sigma, ainsi que des recommandations de détection et d’atténuation.
Chinese State Hackers are using new #BRICKSTORM malware against VMware systems according to a joint alert from US and Canadian agencies.
Read: https://hackread.com/chinese-state-hackers-brickstorm-vmware-systems/
📰 CISA Exposes 'BRICKSTORM' Backdoor Used by Chinese State Actors to Infiltrate US Government
📢 CISA, NSA & Canada warn of 'BRICKSTORM' malware used by PRC state actors against govt & IT sectors. The sophisticated backdoor targets VMware & Windows, using DoH for stealth C2 comms. 🛡️ #ThreatIntel #CyberSecurity #BRICKSTORM #China
CISA, NSA, and the Canadian Cyber Centre have issued a joint alert on BRICKSTORM, a stealthy backdoor used by Chinese state-sponsored actors to target government and IT sectors. Learn the TTPs and mitigations.
CISA warns of Chinese "BrickStorm" malware attacks on #VMware servers
#news #tech #technology #security #privacy #malware #brickstorm #china