Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

We’ve observed a recent uptick in LATRODECTUS, a malware loader with ties to ICEDID. This brand new article breaks down the details and highlights protections. Check it out: go.es.io/4bFp1Zo

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

has identified a brand new malware loader connected to BYOVD. A full write-up on GHOSTENGINE is coming next week, but we've already got a rule in place: go.es.io/3K1FH1v

account_circle
Ruben Groenewoud(@RFGroenewoud) 's Twitter Profile Photo

Ebury is some fascinating and sophisticated malware! Props to ESET Research for their extensive threat research report. Happy to see our coverage at Elastic is on point. 🔍👏

Ebury is some fascinating and sophisticated malware! Props to @ESETresearch for their extensive threat research report. Happy to see our coverage at @elastic is on point. 🔍👏

#ebury #ElasticSecurityLabs #elastic
account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

.Samir‘s new article explores recent Windows zero-day attacks by analyzing in-the-wild LPE examples and outlining detections that can be run in Elastic Security. Check out the three cases: CLFS, DWM, and Activation Context: go.es.io/43vV8rC

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

Looking to fine tune Linux permissions? This new article from Shashank K S focuses on process capabilities. See how privilege escalation occurs in Linux systems and implement some best practices to keep your organization safe: go.es.io/3vkG8Av

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

Streamline Linux detections with this new article on Auditd from Ruben Groenewoud. This article explores the tool’s capabilities, how to set it up on your own system, and walks through an introduction to Auditd Manager: go.es.io/3PMWyIN

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

We've got a new report: the LLM Safety Assessment! This brand new publication discusses LLM implementation risks, expands on OWASP® Foundation‘s research, and provides mitigations for common threats. Get it for free: go.es.io/4a7FJiY

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

The recent discovery of the XZ backdoor into Linux systems has caused quite a stir. See our detailed breakdown of CVE-2024-3094 and the protections we’ve created in this new article from Samir, Mika Ayenson, and Jake: go.es.io/3TJYin8

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

Part two of Cyril F. and Samir's new series is up! This article explores REMCOS' recording capabilities and how it communicates with its C2. Check it out: go.es.io/44iqp1T

account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

Interested in securing the lifecycle of your LLM? The newest article from Mika Ayenson details his research into native protections against the OWASP® Foundation Top Ten with ES|QL. Check it out: go.es.io/3Qht7i9

account_circle
Cybersecurity Help(@Cybershelp) 's Twitter Profile Photo

cybersecurity-help.cz/blog/3588.html

Researchers discovered a new malware campaign that leverages MSIX application packages to infect Windows machines with a stealthy malware loader called ‘Ghostpulse.’

cybersecurity-help.cz/blog/3588.html

Researchers discovered a new malware campaign that leverages MSIX application packages to infect Windows machines with a stealthy malware loader called ‘Ghostpulse.’

#ElasticSecurityLabs #MSIX #Ghostpulse
account_circle
Elastic Security Labs(@elasticseclabs) 's Twitter Profile Photo

In the first of three, Cyril F. gives an overview of the implant’s major capabilities. Tune in next week to gain new insights, learn detection strategies from @sbousseaden, and more! Read part 1 here: go.es.io/4aZrtcX

account_circle
Nehemiah Edet(@clexingtony) 's Twitter Profile Photo

unpacks a recent ICEDID sample and releases new tools for threat research, learn more about this financially-motivated threat here: go.es.io/42mWzXR

account_circle
Elastic(@elastic) 's Twitter Profile Photo

Check out this brand new publication from Elastic Security Labs: the LLM Safety Assessment.

This report explores and safety, including in-depth explanations of risks and best practices to mitigate attacks. go.es.io/3WAtV5Q

account_circle