#latrodectus

Phillemon CEH | CTHwardenshield
2025-06-02

🕷️ Latrodectus: The “Black Widow” Malware of 2025

A new threat has emerged — Latrodectus, a stealthy malware loader evolving from IcedID’s shadow.

Read the full article:
👉 wardenshield.com/latrodectus-m

The Spamhaus Projectspamhaus@infosec.exchange
2025-05-23

🔥 Operation Endgame is BACK! This time targeting #BumbleBee, #Latrodectus, #DanaBot, #WarmCookie, #Qakbot and #Trickbot!

Once again this is a HUGE win, with a truly international effort! 💪

As with phase one of #OperationEndgame, Spamhaus are providing remediation support - those affected will be contacted in due course with steps to take.

For more information, read our write-up here:
👉 spamhaus.org/resource-hub/malw

2025-05-14
brown widow egg sack

#latrodectus #spiders
neville parknev@flipping.rocks
2025-04-05

#BREAKING: new Travis McEnery video just dropped and it's a 1h20m look at the black widow spider!! youtu.be/DHl_wRE4H0Y

(Two of the arachnologists who regularly advise on the series have studied black widows so this is gonna be a good one)

#SpidersOfMastodon #spiders #Theridiidae #Latrodectus

abuse.ch :verified:abuse_ch@ioc.exchange
2025-02-06

A new version of #Latrodectus is out 📣🔥

Version: 1.9
Campaign: Mimikast

The corresponding botnet C2s have been caught earlier today by @r0ny_123 🎣
📡threatfox.abuse.ch/browse/malw

The relevant malware sample is available on MalwareBazaar:
📄 bazaar.abuse.ch/sample/762d06b

eingesetzt. Ein mehrschichtiger Sicherheitsansatz, unterstützt durch Tools wie Wazuh für Echtzeitüberwachung und Bedrohungserkennung, ist entscheidend, um sich vor dieser Bedrohung zu schützen. #CyberSecurity #Malware #Latrodectus #Wazuh #ThreatDetection

TheDoctorTheDoctor512
2024-12-12

Ein mehrschichtiger Sicherheitsansatz, unterstützt durch Tools wie Wazuh für Echtzeitüberwachung und Bedrohungserkennung, ist entscheidend, um sich vor dieser Bedrohung zu schützen.

2024-09-24

Finally we also witnessed in the wild one of those #ClearFake / #ClickFix bait delivered per email as reported by Proofpoint in June - ending with a #brutel / #Latrodectus / #BruteRatel
payload proofpoint.com/au/blog/threat-

2024-07-12

Latrodectus Affiliate Resumes Operations Using Brute Ratel C4 Post Operation Endgame
#Latrodectus #BruteRatel
blog.reveng.ai/latrodectus-dis

2024-05-21

Spring Cleaning with LATRODECTUS: A Potential Replacement for ICEDID
#Latrodectus
elastic.co/security-labs/sprin

The Spamhaus Projectspamhaus@infosec.exchange
2024-05-10

Spamhaus Malware Labs witnessed Smoke Loader (aka Dofoil) dropping a fresh Latrodectus sample yesterday 🤖🔥...full details below:

Compile timestamp: Thu May 09 11:08:17 2024

Payload URL:
🌐 urlhaus.abuse.ch/url/2844417/

Latrodectus malware sample:
📄 bazaar.abuse.ch/sample/2406777

Botnet C2 domains:
🤖 threatfox.abuse.ch/ioc/1268945
🤖 threatfox.abuse.ch/ioc/1268946

#malwaresample #Latrodectus

Just Another Blue TeamerLeeArchinal@ioc.exchange
2024-05-01

Happy Wednesday everyone!

The Proofpoint Threat Research team paired up with the Team Cymru to dissect the #Latrodectus malware. "First seen being used by #TA577 and more recently #TA578, Latrodectus is a downloader that likes to evade sandbox environments." The researchers take a deep dive into the code to see what information they could extract and found PLENTY!

After you are done reading, why not take a Cyborg Security Community Hunt Package to hunt for a threat like this? In the article, the researchers mention that the malware sets an AutoRun registry key for persistence, which is a common technique used by different adversaries and malware due to the capability and functionality of those registry keys. So, take this hunt package with you, it's dangerous out there! Enjoy and Happy Hunting!

Autorun or ASEP Registry Key Modification
hunter.cyborgsecurity.io/resea

Source of article:
proofpoint.com/us/blog/threat-

#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday #huntoftheday #getHunting

Scripter :verified_flashing:scripter@social.tchncs.de
2024-04-10
2024-04-08

Watch out for the new #Latrodectus #phishing #malware campaigns that are likely from the same hackers as IcedID. Designed for payload retrieval & executing commands, this new downloader has various sandbox evasion functionalities. thehackernews.com/2024/04/watc
#Cybersecurity #infosec #security #DFIR

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst