this post was submitted on 06 Mar 2024
32 points (100.0% liked)

Cybersecurity

5982 readers
71 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 2 years ago
MODERATORS
 

Cybercriminals exploited the open-source hypervisor QEMU to create a stealthy network tunnel in an attack against a large company. QEMU, typically used for running guest operating systems, was manipulated to establish a covert channel to a remote server. Kaspersky analysts discovered the attack, which used minimal resources to avoid detection. The attackers also employed 'Angry IP Scanner' for network scanning and 'mimikatz' for credential theft. Kaspersky emphasizes the need for multi-level protection, including 24/7 network monitoring, to detect the use of legitimate tools for malicious purposes.

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here