Chinese threat actor UNC5221 has significantly upgraded their BRICKSTORM malware with triple-layer encryption that renders most security monitoring ineffective, according to NVISO Security. Now targeting both Linux and Windows environments, this sophisticated threat uses traffic tunneling instead of direct command execution to avoid detection. European strategic industries are primary targets.
#SecurityLand #CyberWatch #CyberSecurity #ThreatIntelligence #APT #Brickstorm
https://www.security.land/brickstorm-malware-evolves-deploying-triple-layer-encryption-to-bypass-enterprise-security/