← Back to the feed

~/article/terminalfix-png-steganography-mon-sep-21st-1jo8bl
infoSource: SANS Internet Storm Center

TerminalFix: PNG Steganography, (Mon, Sep 21st)

Microsoft Security Research published an interesting blog post " TerminalFix campaign deploys a reverse tunnel through multistage intrusion " about a malware campaign. The aspect that I want to take a closer look at, is the fact that the threat actors used PNG files with steganography. I reached out to the researchers and they kindly shared the IOCs for the PNG files with me.

Read at the source

Summary written for cymesh.dev. The full article lives at SANS Internet Storm Center.

~/cymesh.net

Certificates expire quietly

cymesh.net watches your TLS and SSL certificates and warns you before one lapses.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks

Related

~/related/terminalfix-png-steganography-mon-sep-21st-1jo8bl