Dec. 6, 2022, 9:26 a.m. | Nozomi Networks Labs

Security Boulevard securityboulevard.com

WindiGo is a malware that exploits CVE-2018-14847 to gain access to MikroTik routers, which has been used in several campaigns by multiple actors. This blog provides a technical analysis of WindiGo as well as Indicators of Compromise (IoCs) you can use to detect WindiGo in your network.


The post Technical Analysis of the Winbox Payload in WindiGo appeared first on Nozomi Networks.


The post Technical Analysis of the Winbox Payload in WindiGo appeared first on Security Boulevard.

analysis labs labs blogs payload technical technical analysis

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Systems Security Officer (ISSO) (Remote within HR Virginia area)

@ OneZero Solutions | Portsmouth, VA, USA

Security Analyst

@ UNDP | Tripoli (LBY), Libya

Senior Incident Response Consultant

@ Google | United Kingdom

Product Manager II, Threat Intelligence, Google Cloud

@ Google | Austin, TX, USA; Reston, VA, USA

Cloud Security Analyst

@ Cloud Peritus | Bengaluru, India