Today's Core Dump is brought to you by ThreatPerspective

Threat Intelligence

APT41 Has Arisen From the DUST


YARA-L


If you are a Google SecOps Enterprise+ customer, rules were released to your Emerging Threats rule pack, and IOCs listed in this blog post are available for prioritization with Applied Threat Intelligence.

Relevant Rule

  • WinRAR Command Line CSV to RAR
  • SQLULDR2 Process Launch
  • DUSTTRAP Process Execution and Command and Control
  • DUSTTRAP Dropping Multiple Utilities
  • DUSTTRAP Spawning Actions on Objectives Processes
  • Suspected DUSTTRAP Command and Control via Google API



Published: 2024-07-18T14:00:00











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us