NoGoolag
4.69K subscribers
20K photos
11.2K videos
785 files
20.1K links
Live free!

๐Ÿ“ก @NoGoolag

FAQ:
http://t.me/NoGoolag/169

โ˜…Group:
https://t.me/joinchat/nMOOE4YJPDFhZjZk

๐Ÿ“ก @Libreware

๐Ÿ“š @SaveAlexandria

๐Ÿ“ก @BallMemes

FORWARDS ARE NOT ENDORSEMENTS

๐Ÿ’ฏ % satire OSINT
Download Telegram
CloudSorcerer Malware Targets Russian Government | CyberExpress

Researchers from Kaspersky believe that a new APT group is behind the CloudSorcerer malware. The malware is a single Portable Executable (PE) binary written in the C language and adjusts Its functionality depending on the process from which it is executed.

The malwareโ€™s backdoor module begins by collecting system information about the victim machine, while running in a separate thread. This information includes computer name, user name, Windows subversion information, and system uptime.

All the collected data is stored in a specially created structure. Once the information gathering is complete, the data is written to the named pipe \.\PIPE[1428] connected to the C2 module process.


#APT #Russia #CloudSourcerer