-
Nov 30, 2024
In this post I will be taking a look at a Linux backdoor known as REKOOBE1
https://malpedia.caad.fkie.fraunhofer.de/details/elf.rekoobe ↩
-
Sep 24, 2024
This walk-through will be dissecting a WARMCOOKIE infection chain from the perspective of a network packet capture and Suricata alerts.
The various artefacts for this incident are kindly provided by @malware_traffic and located at malware-traffic-analysis.net.
-
Mar 17, 2024
Welcome back to this series, analysing IcedId malware artefacts.
-
Jan 1, 2024
Welcome back to this series, analysing IcedId malware artefacts.
-
Oct 9, 2023
In a world dominated with endpoint detection and response agents, coming across PCAP may be a rare occurrence.