#wiper

Dissent Doe :cupofcoffee:PogoWasRight@infosec.exchange
2025-12-09

Updated my post on the Anubis attack on Mid South Pulmonary Specialists after getting additional info from Anubis.

It seems they used their wiper to delete all of MSPS's backups, and then encrypted all of their systems.

That sounds pretty grim. MSPS has not posted anything (perhaps they can't) or issued any notice anywhere about whether patient care has been affected at all by any breach.

databreaches.net/2025/12/07/th

#HIPAA #healthsec #cybersecurity #databreach #ransomware #Anubis #wiper #backups #incidentresponse

@campuscodi @amvinfe

Dissent Doe :cupofcoffee:PogoWasRight@infosec.exchange
2025-12-09

I commented on an attack on Trumbull County, Ohio, by Anubis that @amvinfe reported this week. I will continue to try to follow up, but in the meantime, I posted this:

"Tell the truth, or someone will tell it for you — Trumbull County, Ohio edition."
databreaches.net/2025/12/09/te

#databreach #ransomware #wiper #govsec #incidentresponse #transparency #Anubis #Trumbull_County

Dissent Doe :cupofcoffee:PogoWasRight@infosec.exchange
2025-12-07

Anubis hasn't really had a lot of media coverage, but @amvinfe's post about the attack on Mid South Pulmonary & Sleep Specialists was a wake-up call for me. So I took a look at Anubis's dark web leak site and saw they added -- and leaked -- five U.S. healthcare entities in November.

Given that they are not loath to encrypt and wipe victims' data... well... yikes.

My post:
databreaches.net/2025/12/07/th

#databreach #ransomware #Anubis #HealthSec #cybersecurity #HIPAA #wiper

2025-10-28

Predatory Sparrow’s toolkit and chain-of-execution highlight destructive-sabotage best practices for defenders:
- Multi-stage batch scripts with hostname checks (avoid accidental collateral).
- Scheduled-task detonation (msrun.bat → 23:55) and NIC disable via PowerShell.
- Log wiping (wevtutil) and BCD/shadow-copy removal to prevent recovery.
- XOR-encrypted configs (msconf.conf), encrypted payloads, and precise target enumeration.

Detection & response suggestions: immutable offline backups, firmware-level integrity checks, EDR + OT anomaly telemetry correlation, and scheduled-task auditing. Discuss what telemetry you’d add to catch the staging phase - then follow @technadu for more IOCs and deep dives.

#ThreatIntel #Wiper #IR #EDR #OTSecurity #ICS #TTPs #InfoSec

Predatory Sparrow Group Attacking Critical Infrastructure to Destroy Data and Cause Disruption
2025-10-25
25 October 2025 - Daily Drawing Day 298
#20252025Challenge
The car's MOT is just around the corner, so I thought I'd change the wiper blades today. Now to wait for some rain to really appreciate them. ☔

#cars #DIY #Wiper #car #車 #メカニック #ワイパー #自動車 #🚙

Watch the time lapse video of this drawing on YouTube Shorts: https://youtube.com/shorts/W0AfWAEB8Us

See the latest at https://darlosworld.bsky.social

The 2025 20-25 Challenge.

This year let’s get better at something by finding a little practice time most days, in my case drawing. - Do your activity for at least 25 minutes, at least 25 days per month.
- Use the hashtag #20252025Challenge on social media etc to track your progress
- Also use the hashtag to cheer on others.

That’s about it!

Have fun with your activities, whatever they may be!

Drawing, programming, dancing, cooking, make up, reading, languages, gardening, mastering high fives, sewing, astrophysics, vcr clock setting ...

#challengeyourself #challenge #Drawing #drawings #illustration #newyearsresolution #25minutes #xppen #clipstudiopaint #dailydrawing #イラスト #クリップスタジオ #絵 #絵画 #絵描きさんと繋がりたい #drawingoftheday #一日一絵 #art #digitalart #oc #一次創作
Drawing of Darlo changing the wiper blades on the car.
2025-09-23

HybridPetya – Ransomware omijający zabezpieczenie UEFI Secure Boot

Badacze bezpieczeństwa z firmy ESET odkryli nowy wariant ransomware przypominający doskonale wszystkim znany Petya/NotPetya, rozszerzony o możliwość przejmowania systemów operacyjnych uruchamianych ze wsparciem UEFI. Malware wykorzystuje podatność CVE-2024-7344do ominięcia mechanizmu UEFI Secure Boot. W najnowszych systemach podatność ta została załatana, jednak schemat działania oprogramowania, tzn. wykorzystanie eksploitów na poziomie firmware...

#WBiegu #Notpetya #Petya #Ransomware #Secureboot #Wiper

sekurak.pl/hybridpetya-ransomw

2025-06-05

Newly identified wiper malware “PathWiper” targets critical infrastructure in Ukraine - Cisco Talos observed a destructive attack on a critical infrastructure entity within Ukra... blog.talosintelligence.com/pat #landingpagetopstory #threatadvisory #topstory #ukraine #wiper #apt

[^BgTA^] :verified: :opensuse:raul@mastodon.in4matics.cat
2025-05-06

👾 Chaos is a #RaaS that also acts as a #wiper, RAT, or even #DDoS botnet.

🎯 It targets both large companies across different industries and SMEs with weak #cybersecurity posture.

👉 Learn more & collect #IOCs: any.run/malware-trends/chaos/?

Kevin Karhan :verified:kkarhan@infosec.space
2025-02-28

@Em0nM4stodon not only must we resist but actively sabotage said attempts.

  • Add "#Wiper-PINs" to #Apps and Programs that'll open up a decoy profile and wipe the original data when typed in instead of the regular PIN.

Make it a mandatory feature and commit #AssetDenial against #Cyberfacists!

infosec.space/@kkarhan/1140832

2024-10-02

Corriere.it - Homepage by di Erica Dellapasqua
Donna incinta trova il tergicristallo rotto e lascia biglietto: "Ho parcheggiato male ma tu sei maleducato!"

Nuovi casi di parcheggi selvaggi e messaggi per giustificare la sosta vietata. Il biglietto lasciato da una donna incinta che ha ritrovato la sua auto (parcheggiata male) sfregiata

Translated:
Pregnant woman finds broken windshield wiper and leaves note: "I parked badly but you are rude!"

New cases of wild parking and messages to justify unauthorized parking. A ticket left by a pregnant woman who found her car (badly parked) vandalized.

#wiper
roma.corriere.it/notizie/crona

Nick EspinosaNickAEsp
2024-03-25
Nick EspinosaNickAEsp
2024-03-25
2024-03-22

#bincapz is getting some press, so I've been inspired to push out a v0.6.0 update:

* Improved packed #ELF #detection
* Improved #Linux #wiper detection
* Improved #Trojan #stealer detection
* Improved #Javascript #supply-chain attack detection
* Improved suspicious eval() detection

Get it here: github.com/chainguard-dev/binc

2024-03-21

SentinelLabs discovered a new variant of AcidRain wiper targeting Ukraine, which they call AcidPour. Their analysis confirms the connection between AcidRain and AcidPour, connecting it to clusters previously publicly attributed to Russian military intelligence. The discovery coincides with the enduring disruption of multiple Ukrainian telecommunication networks since 13 March 2024. SentinelLabs provides a technical analysis, describes AcidPour features and lists IOC. 🔗 sentinelone.com/labs/acidpour-

#AcidRain #AcidPour #wiper #malware #threatintel #IOC #Russia #Ukraine #RussiaUkraineWar

Sparrow 🎄🎁mars1024@techhub.social
2023-12-18

Just learned that there are 2 types of #WD-40 and the silicone one is great for cleaning #wiper blade tips! 😲🤯

#WD40

youtube.com/shorts/rCco-qdBCd0

2023-11-07

Iranian Agonizing Serpens #APT is targeting Israeli entities with destructive cyber attacks
securityaffairs.com/153703/apt
#securityaffairs #hacking #wiper

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst