Visualização normal

Antes de ontemStream principal
  • ✇The DFIR Report
  • From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akira editor
    Overview Bumblebee malware has been an initial access tool used by threat actors since late 2021. In 2023 the malware was first reported as using SEO poisoning as a delivery mechanism. Recently in May of 2025 Cyjax reported on a campaign using this method again, impersonating various IT tools. We observed a similar campaign in […] The post From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akira appeared first on The DFIR Report.
     

From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akira

Por:editor
4 de Novembro de 2025, 18:30

Overview Bumblebee malware has been an initial access tool used by threat actors since late 2021. In 2023 the malware was first reported as using SEO poisoning as a delivery mechanism. Recently in May of 2025 Cyjax reported on a campaign using this method again, impersonating various IT tools. We observed a similar campaign in […]

The post From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akira appeared first on The DFIR Report.

  • ✇The DFIR Report
  • KongTuke FileFix Leads to New Interlock RAT Variant editor
    Researchers from The DFIR Report, in partnership with Proofpoint, have identified a new and resilient variant of the Interlock ransomware group’s remote access trojan (RAT). This new malware, a shift from the previously identified JavaScript-based Interlock RAT (aka NodeSnake), uses PHP and is being used in a widespread campaign. Since May 2025, activity related to […] The post KongTuke FileFix Leads to New Interlock RAT Variant appeared first on The DFIR Report.
     

KongTuke FileFix Leads to New Interlock RAT Variant

Por:editor
13 de Julho de 2025, 21:50

Researchers from The DFIR Report, in partnership with Proofpoint, have identified a new and resilient variant of the Interlock ransomware group’s remote access trojan (RAT). This new malware, a shift from the previously identified JavaScript-based Interlock RAT (aka NodeSnake), uses PHP and is being used in a widespread campaign. Since May 2025, activity related to […]

The post KongTuke FileFix Leads to New Interlock RAT Variant appeared first on The DFIR Report.

❌
❌