Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

106 Results Found

Public

FBI Alert CP 000118-MW TLP White: YARA Rules to Identify Kwampirs Malware Employed in Ongoing

This is a re-release of FBI FLASH message (CP-000118-MW) previously disseminated on 05 February 2020. The FBI has identified additional information regarding the Kwampirs Remote Access Trojan (RAT), which has targeted several global industries, including the software supply chain, healthcare, energy, and financial sectors.
Public

FBI Alert ac-000112-tt TLP Green: Unidentified Cyber Actors Exploit Pulse Secure VPN Vulnerability

Since August 2019, unidentified cyber actors have used a Pulse Secure VPN Vulnerability CVE-2019-11510, which was disclosed this past summer, to exploit notable US entities.
Member

FBI Alert: CP-000118-MW TLP Green: YARA Rules to Identify Kwampirs Malware

On 06 January 2020, the FBI disseminated the FLASH message “Kwampirs Malware Indicators of Compromise Employed in Ongoing Cyber Supply Chain Campaign Targeting Global Industries” (CP-000111-MW).
Member

Website Defacement Activity Indicators of Compromise and Techniques Used to Disseminate Pro-Iranian Messages

Following last week’s US airstrikes against Iranian military leadership, the FBI observed increased reporting of website defacement activity disseminating Pro-Iranian messages. The FBI believes several of the website defacements were the result of cyber actors exploiting known vulnerabilities in content management systems (CMSs) to upload defacement files. The FBI advises organizations and people concerned with Iranian cyber targeting be familiar with the indicators, tactics, and techniques provided in this FLASH, as well as tactics and techniques provided in recently disseminated Private Industry Notification “Notice on Iranian Cyber Tactics and Techniques” (20200109-001, 9 January 2020).