Posts

Showing posts with the label RAT

Weaponizing Historical Malware for Bio-Warfare APT-9

Image
Advancing till APT9 made us to think why emergent and emerging nations are allegedly suspecting china for the cyberattack. To suspect China, those nations require additional information. As of now, the world powers says that all command and control are located in China, and also they are the one to introduce the concept of APT(Advanced Persistent Threat). APT9 APT9 targets biotechnology and pharmaceutical industry. They gained initial access through spearfishing mails and acting as a trusted party between the industry. APT 9 uses some malwares which were already used by the APT1, APT4 and APT5 threat groups. They modified it in accordance to their needs, so that antivirus engine can't detect those threats as their hash value are modified. Most of the RAT's and backdoors used in this attack are already been used by other threat groups in China, so this is also suspected to be originated from China. Source: ITW Malwares Used HomeUnix, FunRun, Zxshell, Gh0st( Apt1 ), Sogu( Apt3...

Initial Infiltration of Construction and Engineering APT-6 & APT-7

Image
Both APT 6 & APT 7 are so similar but with the slightest differences. They both steal something that's not the same yet similar. Construction, Aerospace, Engineering and defense industrial estate are targets of APT 7. For APT 6, they share the same domain but with additional targets, Transportation, construction and materials. The attacked areas are also similar, as in The APT 6's goal is to heist a data, whereas the APT 7 steals intellectual property.                 Credits: Kaspersky If you are new to this post and not aware of about what APT is check out our first blog listed under APT which will provide you more insights. Advanced Persistent Thread-6 Anonymity FBI alert The backdoor RAT Prevention techniques Anonymity   The cybersecurity elite group confirmed that their digital signatures were so unique, meaning this APT-6 digital signature were entirely new. Zscalar who actually informed FBI saying that many organiz...