Category: Threats

Premium Content

Blackmatter

OVERVIEW Blackmatter is a ransomware variant that was first seen in July 2021, and is considered a Ransomware-as-a-service tool. The variant encrypts files utilizing a

Read More »
Community Content

Meterpreter Payload

OVERVIEW Meterpreter is an attack payload used in the Metasploit attack framework used widely by security professionals, including threat hunters. Metasploit is an attack toolset

Read More »
Community Content

Cobalt Strike

OVERVIEW Cobalt Strike (also known as CobaltStrike, BEACON) is a fully-featured and commerically available penetration testing tool offered by Washington, DC-based Strategic Cyber LLC. The

Read More »
Community Content

Ryuk Ransomware

OVERVIEW Ryuk is a prolific and dangerous ransomware strain that was first observed in mid-August 2018. Ryuk is known to be a derivative of the

Read More »
Community Content

Pysa Ransomware

PYSA OVERVIEW The Pysa Ransomware is a popular Ransomware-as-a-Service (RaaS) that has been observed operating since at least mid-2019. The name “Pysa” is possibly derived

Read More »
Community Content

Snatch Ransomware

OVERVIEW Snatch is a novel ransomware first observed in early 2019 being offered as Ransomware-as-a-Service (RaaS) by the actor “BulletToothTony.” The actor indicated that, unlike

Read More »
Remexi
Premium Content

Remexi Backdoor

OVERVIEW The Remexi Backdoor malware has been observed since at least 2014, and is believed to be employed by Iranian adversaries. Originally, the malware’s function

Read More »