#filelessattacks

Tedi Heriyantotedi@infosec.exchange
2023-07-14

Wiz Research team recently detected a new fileless attack targeting cloud workloads. The attack consists of Python code that loads an XMRig Miner directly into memory using memfd, a known Linux fileless technique: wiz.io/blog/pyloose-first-pyth

#linuxsecurity #filelessattacks #xmrig #malware #jupyternotebook

Just Another Blue TeamerLeeArchinal@ioc.exchange
2023-04-28

Shout out to Malwarebytes Labs team for this #readoftheday! I am a huge fan of anything Living-off-the-land binaries (#LOLBINS) and I this article provides a great description of what they are and how #filelessattacks compare and contrast. Enjoy and Happy Hunting!

Fileless attacks: How attackers evade traditional AV and how to stop them
malwarebytes.com/blog/business

#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting

PowerShell script extracted from a Microsoft Word document. If macros are enabled, it would execute the code in memory upon being opened.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst