c
July 25, 2023, 5:04 p.m. |

Cloud Security Alliance cloudsecurityalliance.org

Originally published by ThreatLocker.On June 6, 2023, Adlumin Threat Research discovered a living-off-the-land attack, PowerDrop, using a malicious PowerShell script to target the US aerospace industry. LOTL attacks leverage powerful built-in tools to masquerade as legitimate processes. Therefore, they do not trigger any alerts. Here’s how PowerDrop was able to use this to its advantage. PowerDrop Analysis PowerDrop can be classified as a Remote Access Tool (RAT). This type of malicious so...

adlumin aerospace aerospace industry alerts analysis attack attacks industry june lotl malicious powerdrop powershell powershell script processes research script target threat threatlocker threat research tools trigger

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Data Privacy Manager m/f/d)

@ Coloplast | Hamburg, HH, DE

Cybersecurity Sr. Manager

@ Eastman | Kingsport, TN, US, 37660

KDN IAM Associate Consultant

@ KPMG India | Hyderabad, Telangana, India

Learning Experience Designer in Cybersecurity (f/m/div.) (Salary: ~113.000 EUR p.a.*)

@ Bosch Group | Stuttgart, Germany

Senior Security Engineer - SIEM

@ Samsara | Remote - US