all InfoSec news
Kazakhstan-associated YoroTrooper disguises origin of attacks as Azerbaijan
Oct. 25, 2023, 12:35 p.m. | MalBot
Malware Analysis, News and Indicators - Latest topics malware.news
- Cisco Talos assesses with high confidence that YoroTrooper, an espionage-focused threat actor first active in June 2022, likely consists of individuals from Kazakhstan based on their use of Kazakh currency and fluency in Kazakh and Russian. The actor also appears to have a defensive interest in the website of the Kazakhstani state-owned email service and has rarely targeted Kazakh entities.
- YoroTrooper attempts to obfuscate the origin of their operations, employing various tactics to make its malicious activity appear to emanate …
actor attacks azerbaijan cisco cisco talos currency defensive espionage high interest june kazakhstan origin russian state talos threat threat actor website yorotrooper
More from malware.news / Malware Analysis, News and Indicators - Latest topics
Update: what-is-new.py Version 0.0.4
22 hours ago |
malware.news
The CTI Analyst Challenge
1 day, 1 hour ago |
malware.news
2024-06-08: Three days of server scans and probes
1 day, 17 hours ago |
malware.news
Update: simple_listener.py Version 0.1.5
1 day, 22 hours ago |
malware.news
Jobs in InfoSec / Cybersecurity
CyberSOC Technical Lead
@ Integrity360 | Sandyford, Dublin, Ireland
Cyber Security Strategy Consultant
@ Capco | New York City
Cyber Security Senior Consultant
@ Capco | Chicago, IL
Senior Security Researcher - Linux MacOS EDR (Cortex)
@ Palo Alto Networks | Tel Aviv-Yafo, Israel
Sr. Manager, NetSec GTM Programs
@ Palo Alto Networks | Santa Clara, CA, United States
SOC Analyst I
@ Fortress Security Risk Management | Cleveland, OH, United States