Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

XWorm Cocktail: A Mix of PE data with PowerShell Code, (Wed, Feb 19th)

published on 2025-02-19 07:39:49 UTC by
Content:
While hunting, I spent some time trying to deobfuscate a malicious file discovered on VT. It triggered my PowerShell rule. At the end, I found two files that look close together:
Article: XWorm Cocktail: A Mix of PE data with PowerShell Code, (Wed, Feb 19th) - published 3 days ago.

https://isc.sans.edu/diary/rss/31700   
Published: 2025 02 19 07:39:49
Received: 2025 02 19 08:12:35
Feed: SANS Internet Storm Center, InfoCON: green
Source: SANS Internet Storm Center, InfoCON: green
Category: Alerts
Topic: Vulnerabilities
Views: 2

Custom HTML Block

Click to Open Code Editor