Cuckoo Linux Subsystem: Some Love for Windows 10

August 25, 2017 | Gerald Carsula

I normally use Linux for my malware analysis lab machine. But, recently, I got ...

Necurs Unleashed “Locky diablo” from Hell

August 23, 2017 | Nicholas Ramos

Over two days in early August (the 8th and 9th), amidst of the active ...

ModSecurity Web Application Firewall - Commercial Rules Update (2)

August 22, 2017 | Victor Hora

We have released new commercial rules for ModSecurity Web Application Firewall ...

Announcing ModSecurity version 2.9.2

August 09, 2017 | Felipe "Zimmerle" Costa

We recently released ModSecurity version 2.9.2. The release contains a number ...

Chip Off the Old EMV

August 08, 2017 | Shawn Kanady

Recently, Jason Knowles of ABC 7's I-Team asked us, "What is the security risk ...

Microsoft Patch Tuesday, August 2017

August 08, 2017 | Admin

August's Patch Tuesday brings with it a relatively light month closing holes in ...

Tale of the Two Payloads – TrickBot and Nitol

August 04, 2017 | Rodel Mendrez

A couple of weeks ago, we observed the Necurs botnet distributing a new malware ...

Spammed JScript Phones Home To Download NemucodAES And Kovter

July 25, 2017 | Nicholas Ramos

Contributed by: Gerald Carsula, Rodel Mendez and Nicholas Ramos

Spammed JScript Phones Home To Download NemucodAES And Kovter

July 25, 2017 | Nicholas Ramos

Contributed by: Gerald Carsula, Rodel Mendez and Nicholas Ramos

ModSecurity Web Application Firewall - Commercial Rules Update (1)

July 13, 2017 | SpiderLabs Researcher

We have released new commercial rules for ModSecurity Web Application Firewall ...

Petya From The Wire: Detection using IDPS

July 13, 2017 | Bryant Smith

Most malware that traverses a network do so with specific indicators, some of ...

Microsoft Patch Tuesday, July 2017

July 11, 2017 | Admin

July's Patch Tuesday brings patches for 54 CVEs, nearly half the number patched ...

A Computational Complexity Attack against Racoon and ISAKMP Fragmentation

July 10, 2017 | Neil Kettle

Trustwave recently reported a remotely exploitable computational complexity ...

Elephone P9000 Lock Screen Lockout Bypass

June 29, 2017 | Jacob Wilkin

Brute force attacks against smartphones are not usually a viable attack vector. ...

0-Day Alert: Your Humax WiFi Router Might Be In Danger

June 28, 2017 | SpiderLabs Pen Testing LAC

Over the years WiFi Routers have been notoriously susceptible to simple ...

The Petya/NotPetya Ransomware Campaign

June 27, 2017 | SpiderLabs Researcher

This is an ongoing, emerging story and may be updated after posting.

Minimalist Alina PoS Variant Starts Using SSL

June 19, 2017 | Rodel Mendrez

More than four years ago, we published a series of blogs discussing in-depth ...

ModSecurity Web Application Firewall - Commercial Rules Update

June 16, 2017 | SpiderLabs Researcher

We have just released new commercial rules for ModSecurity Web Application ...

KOVTER and CERBER on a One-Two Punch using Fake Delivery Notification

June 14, 2017 | Nicholas Ramos

We previously outlined a spam campaign that delivered FAKEGLOBE and CERBER ...

Microsoft Patch Tuesday, June 2017

June 13, 2017 | SpiderLabs Researcher

For the June 2017 Patch Tuesday Microsoft is releasing 97 CVEs, nearly double ...

The WannaCry Impact on Databases Trustwave Database Security Knowledgebase Special Update 5.15

June 02, 2017 | Lolita Chandra

WannaCry is a network worm that exploits a vulnerability in Microsoft's ...

FakeGlobe and Cerber Ransomware: Sneaking under the radar while WeCry

June 02, 2017 | Nicholas Ramos

Recently, we observed a constant influx of spam that distributes two ransomware ...

Necurs Recurs

May 31, 2017 | Homer Pacag

The Necurs botnet, which was responsible for millions of malicious spam ...

URSNIF is Back Riding a New Wave of Spam

May 19, 2017 | Nicholas Ramos

The infamous data-stealing URSNIF malware has done it again and it's here to ...

Advanced Malware Detection with Suricata Lua Scripting

May 18, 2017 | Bryant Smith

Normal IDPS signatures using either Snort or Suricata have quite a few options ...

TheShadowBrokers Babytalk Translation

May 16, 2017 | Admin

TheShadowBrokers have just released a blog post (written in a child-like style ...

WannaCry: We Want to Cry

May 15, 2017 | Phil Hay

For the last few days the WannaCry ransomware event created mayhem, where ...

WannaCry: We Want to Cry

May 15, 2017 | Phil Hay

Contributors: Phil Hay, Rodel Mendrez, Gerald Carsula, Nicholas Ramos, Homer ...