FortiGuard Labs Threat Research

FortiGuard Labs Threat Research

Moobot Strikes Again - Targeting Cacti And RealTek Vulnerabilities

FortiGuard Labs examined several attacks targeting Cacti and Realtek vulnerabilities. Understand the payloads of these attacks and their resulting behavior of spreading ShellBot and Moobot malware.

By Cara Lin March 29, 2023

FortiGuard Labs Threat Research

Supply Chain Attack via New Malicious Python Packages

FortiGuard Labs team recently discovered over 60 zero-day attacks embedded in PyPI packages between early February and mid-March of 2023. Read the blog to learn about the behaviors of these attacks and how to protect against them.

By Jin Lee and Ian Liu March 27, 2023

FortiGuard Labs Threat Research

The Latest Intel on Wipers

FortiGuard Labs research found wiper malware took off in the second half of 2022. In this article learn about the growth of wiper malware and how to avoid a wipeout.

By Derek Manky March 23, 2023

FortiGuard Labs Threat Research

Ransomware Roundup — HardBit 2.0

In this week's Ransomware Roundup, FortiGuard Labs covers the HardBit 2.0 ransomware along with protection recommendations. Learn more.

By James Slaughter March 16, 2023

FortiGuard Labs Threat Research

Microsoft OneNote File Being Leveraged by Phishing Campaigns to Spread Malware

An in-depth analysis of a phishing campaign utilizing a Microsoft OneNote file. Learn about the contents of this malicious attack from how it executes, to evading detection, and fully controlling the victim's device.

By Xiaopeng Zhang March 16, 2023

FortiGuard Labs Threat Research

Reduce, Reuse, Recycle: Bad Actors Practicing the Three Rs

Cybercriminals are big proponents of getting the most out of their resources. Read how FortiGuard Labs researchers investigated how they're retrofitting code to enable more successful criminal outcomes.

By Derek Manky March 15, 2023

FortiGuard Labs Threat Research

Old Cyber Gang Uses New Crypter – ScrubCrypt

FortiGuard Labs elaborates on the details of ScrubCrypt malware that obfuscates and encrypts applications and makes them able to dodge to security programs. Read more.

By Cara Lin March 08, 2023

FortiGuard Labs Threat Research

Ransomware Roundup – Sirattacker and ALC Ransomware

In this week's Ransomware Roundup, FortiGuardLabs covers Sirattacker and ALC ransomware along with protection recommendations. Learn more:

FortiGuard Labs Threat Research

Just Because It’s Old Doesn’t Mean You Throw It Away (Including Malware!)

There are still fresh infections of MyDoom (also known as Novarg and Mimail) occurring along with corresponding phishing events. Learn how this malware is continuing to operate in 2023.

By James Slaughter March 01, 2023

FortiGuard Labs Threat Research

Can You See It Now? An Emerging LockBit Campaign

A new LockBit ransomware campaign has been using a combination of techniques effective against AV and EDR solutions. Learn more about the infection chain and Tactics, Techniques and Procedures (TTPs) of this campaign.

By Eliran Voronovitch February 28, 2023