OCTOBER- NOV 2025 updates

OCTOBER- NOV 2025 updates

724 bookmarks
Newest
Remote Access Contains ability to query network adapter information Ransomware Detected indicator that file is ransomware Spyware Found a string that may be used as part of an injection method Evasive Able to check if a debugger is running Contains ability to terminate a process Possibly tries to implement anti-virtualization techniques using MAC address detection Network Behavior Contacts 1 domain. Free Automated Malware Analysis Service - powered by Falcon Sandbox - Viewing online file analysis results for 'test.exe'
Remote Access Contains ability to query network adapter information Ransomware Detected indicator that file is ransomware Spyware Found a string that may be used as part of an injection method Evasive Able to check if a debugger is running Contains ability to terminate a process Possibly tries to implement anti-virtualization techniques using MAC address detection Network Behavior Contacts 1 domain. Free Automated Malware Analysis Service - powered by Falcon Sandbox - Viewing online file analysis results for 'test.exe'
Submit malware for free analysis with Falcon Sandbox and Hybrid Analysis technology. Hybrid Analysis develops and licenses analysis tools to fight malware.
·hybrid-analysis.com·
Remote Access Contains ability to query network adapter information Ransomware Detected indicator that file is ransomware Spyware Found a string that may be used as part of an injection method Evasive Able to check if a debugger is running Contains ability to terminate a process Possibly tries to implement anti-virtualization techniques using MAC address detection Network Behavior Contacts 1 domain. Free Automated Malware Analysis Service - powered by Falcon Sandbox - Viewing online file analysis results for 'test.exe'
Office32WW.msi.CHEF@SUCKMYCHOCOLATESALTYBALLS.DOGE.GOV 2025-10-03 05:37:43 (UTC) Free Automated Malware Analysis Service - powered by Falcon Sandbox
Office32WW.msi.CHEF@SUCKMYCHOCOLATESALTYBALLS.DOGE.GOV 2025-10-03 05:37:43 (UTC) Free Automated Malware Analysis Service - powered by Falcon Sandbox

dropped by test.exe 16b18ac4dc26c143c5f8dfa938a73acb94773aeb67afc7c54c2d88d1514c75c6 malicious
completely malicious

https://hybrid-analysis.com/sample/16b18ac4dc26c143c5f8dfa938a73acb94773aeb67afc7c54c2d88d1514c75c6

·hybrid-analysis.com·
Office32WW.msi.CHEF@SUCKMYCHOCOLATESALTYBALLS.DOGE.GOV 2025-10-03 05:37:43 (UTC) Free Automated Malware Analysis Service - powered by Falcon Sandbox
Postman Whoisxml
Postman Whoisxml
·whoisxmlapi-gear428-4206513.postman.co·
Postman Whoisxml
August 25, 2025 Russian state cyber group Static Tundra exploiting Cisco devices, FBI warns
August 25, 2025 Russian state cyber group Static Tundra exploiting Cisco devices, FBI warns
A Russian cyber-espionage group is increasingly targeting unpatched Cisco networking devices through a vulnerability first discovered in 2018, the FBI warned.
he group was successful in compromising the business systems of the Wolf Creek Nuclear Operating Corporation in Burlington, Kansas, through spearphishing. They also found success using "watering hole" attacks, which captured the login credentials of energy sector engineers through compromised websites.
·therecord.media·
August 25, 2025 Russian state cyber group Static Tundra exploiting Cisco devices, FBI warns
Russian Disinformation Campaign “DoppelGänger” Unmasked: A Web of Dece
Russian Disinformation Campaign “DoppelGänger” Unmasked: A Web of Dece
The European Union’s Disinformation Lab (EU DisinfoLab) has recently exposed a sophisticated Russian influence campaign known as “DoppelGänger.”
Russian Social Design Agency and Structura National Technologies. DoppelGänger promotes pro-Russian narratives and infiltrates Europe’s media landscape by disseminating disinformation through a network of cloned websites, fake articles, and social media manipulation
disinformation campaign uses social media bots to spread its pro-Russian narratives with a multi-stage website obfuscation to mask links between the bots and inauthentic sources. Additionally, Russian actors likely paid for sponsored posts to increase these sites’ visibility and bypass moderation attempts used by social media companies.
·cybercom.mil·
Russian Disinformation Campaign “DoppelGänger” Unmasked: A Web of Dece