Internet Storm Center
Sign In
Sign Up
SANS Network Security: Las Vegas Sept 4-9.
Handler on Duty:
Johannes Ullrich
Threat Level:
green
Date
Author
Title
MARS STEALER
2022-03-23
Brad Duncan
Arkei Variants: From Vidar to Mars Stealer
MARS
2024-08-19/a>
Xavier Mertens
Do you Like Donuts? Here is a Donut Shellcode Delivered Through PowerShell/Python
2022-03-23/a>
Brad Duncan
Arkei Variants: From Vidar to Mars Stealer
2020-10-14/a>
Xavier Mertens
Nicely Obfuscated Python RAT
STEALER
2024-09-18/a>
Xavier Mertens
Python Infostealer Patching Windows Exodus App
2024-08-27/a>
Xavier Mertens
Why Is Python so Popular to Infect Windows Hosts?
2024-07-26/a>
Xavier Mertens
ExelaStealer Delivered "From Russia With Love"
2024-05-31/a>
Xavier Mertens
"K1w1" InfoStealer Uses gofile.io for Exfiltration
2024-02-20/a>
Xavier Mertens
Python InfoStealer With Dynamic Sandbox Detection
2024-01-25/a>
Xavier Mertens
Facebook AdsManager Targeted by a Python Infostealer
2023-12-22/a>
Xavier Mertens
Shall We Play a Game?
2023-09-29/a>
Xavier Mertens
Are You Still Storing Passwords In Plain Text Files?
2023-05-04/a>
Xavier Mertens
Infostealer Embedded in a Word Document
2023-03-01/a>
Xavier Mertens
Python Infostealer Targeting Gamers
2022-12-18/a>
Guy Bruneau
Infostealer Malware with Double Extension
2022-08-11/a>
Xavier Mertens
InfoStealer Script Based on Curl and NSudo
2022-04-06/a>
Brad Duncan
Windows MetaStealer Malware
2022-03-23/a>
Brad Duncan
Arkei Variants: From Vidar to Mars Stealer
2022-03-09/a>
Xavier Mertens
Infostealer in a Batch File
2021-12-21/a>
Xavier Mertens
More Undetected PowerShell Dropper
2021-12-01/a>
Xavier Mertens
Info-Stealer Using webhook.site to Exfiltrate Data
2021-07-09/a>
Brad Duncan
Hancitor tries XLL as initial malware file
2021-06-30/a>
Brad Duncan
June 2021 Forensic Contest: Answers and Analysis
2021-04-06/a>
Jan Kopriva
Malspam with Lokibot vs. Outlook and RFCs
2021-03-31/a>
Xavier Mertens
Quick Analysis of a Modular InfoStealer
2019-11-27/a>
Brad Duncan
Finding an Agent Tesla malware sample
2019-10-09/a>
Brad Duncan
What data does Vidar malware steal from an infected host?
2019-01-24/a>
Brad Duncan
Malspam with Word docs uses macro to run Powershell script and steal system data
2017-03-08/a>
Xavier Mertens
Not All Malware Samples Are Complex
Homepage
Diaries
Podcasts
Jobs
Data
TCP/UDP Port Activity
Port Trends
SSH/Telnet Scanning Activity
Weblogs
Threat Feeds Activity
Threat Feeds Map
Useful InfoSec Links
Presentations & Papers
Research Papers
API
Tools
DShield Sensor
DNS Looking Glass
Honeypot (RPi/AWS)
InfoSec Glossary
Contact Us
Contact Us
About Us
Handlers
About Us
Slack Channel
Mastodon
Bluesky
X
Subscribe to the daily podcast via
RSS
or
iTunes