Posts for category: Forensics Weekly Executive Summmaries

Weekly Executive Summary for Week September 01, 2017

What is it? Ransomware What has it been dubbed? Defray What does it do? The ransomware that has been dubbed Defray after it’s C2(Command and Control) servers hostname ...

Weekly Executive Summary for Week August 18, 2017

What is it? Android Spyware What has it been dubbed? SonicSpy | Soniac What does it do? The spyware was discovered in an application called Soniac, it was being distributed through the ...

Weekly Executive Summary for Week August 04, 2017

What is it? Android Spyware What has it been dubbed? Lipizzan What does it do? The malware can steal information from infected devices (i.e., text messages, emails, voice calls, photos, ...

Weekly Executive Summary for Week July 21, 2017

What is it? OS X Malware What has it been dubbed? OSX Dok | OSX.Dok What does it do? An email phishing campaign(targeting mostly European users). Affects all versions of OSX. Malicious code ...

Weekly Executive Summary for Week July 14, 2017

What is it? Ad-Ware | Android Malware What has it been dubbed? CopyCat What does it do? Malware was able to infect 14 million Android devices and root 8 million of those infected. CopyCat ...

Weekly Executive Summary for Week July 07, 2017

What is it? Banking Trojan | Worm What has it been dubbed? Qakbot | Pinkslipbot | W32.Qakbot | Qbot What does it do? The malware has the ability to gather data from compromised systems and ...

Weekly Executive Summary for Week June 30, 2017

What is it? Ransomware What has it been dubbed? Petya | Petrwrap | NotPetya | exPetr | Petya 2.0 | GoldenEye What does it do? Ukraine, Russia, and Western Europe were heavily affected, ...

Weekly Executive Summary for Week June 23, 2017

What is it? Linux Ransomware What has it been dubbed? Erebus ransomware What does it do? Infected 153 Linux servers and over 3,400 business websites in South Korean web hosting company, ...

Weekly Executive Summary Week Ending June, 16 2017

What is it? Windows SMB Server Exploit What has it been dubbed? Eternalblue What does it do? An attacker could exploit the vulnerabilities in Windows SMB(Server Message Block) servers and ...

Weekly Executive Summary Week Ending June, 02 2017

What is it? Crypto-Ransomware | Trojan What has it been dubbed? Uiwix What does it do? A ransomware variant of the infamous wannacry malware. Exploits the same vulnerability in SMBv1 and ...