GSC Research

4 Followers
5 Following
22 Posts
Global Security Challenges :: Research and Consulting
GSC R&Chttps://gsc-rc.net/
As correctly stated by @pmelson , intelligence analysis is not an inherently technical discipline, but by its very nature, cyber threat intelligence is. To be good at CTI requires both the competence to understand raw technical data in context as well as the analytical rigor to draw sound conclusions from it. The telltale sign of a classically trained intel analyst moving into CTI unprepared is an over-reliance on other reporting and analysis without challenging technical details or supporting prior reports with additional technical artifacts collected independently.
Destructive malware targeting Ukrainian organizations: technical blog post by #MSTIC : https://www.microsoft.com/security/blog/2022/01/15/destructive-malware-targeting-ukrainian-organizations/
Destructive malware targeting Ukrainian organizations - Microsoft Security Blog

Microsoft Threat Intelligence Center (MSTIC) has identified evidence of a destructive malware operation targeting multiple organizations in Ukraine.

Microsoft Security Blog
Samples of #WhisperGate (VXUG) aka #attack13 (DG) aka DEV-0586 (MSTIC) - the MBR Overwriter targeting Gov #Ukraine https://samples.vx-underground.org/APTs/2022/2022.01.15/Samples/ (pass "infected")
vx-underground - Directory

In short, they are proposing to break the internet totally. https://crowdsec.net/log4j-tracker/
The CrowdSec Log4J worldwide threat tracker

Check our full Log4J threat report and find out more about attackers trying to exploit the vulnerability, as reported by the CrowdSec community.

The open-source & collaborative IPS
vx-underground - Directory

#VXUnderground published a first worm sample that uses a #Log4Shell to install Monero-miner.
Self-propagating #Mirai-bot identified by security researcher [email protected]