Cyber Citadel: Episode 4 - Insigh...

Cyber Citadel: Episode 4 - Insights into PoolParty, COLDRIVER, and Lazarus Exploits....

Cyber Citadel by Noah
S1 · E4
Dec 14, 2023
07:53

Episode notes

1. PoolParty Process Injection Techniques - SafeBreach's Alon Leviev unveiled eight ingenious methods designed to execute code within Windows systems, skillfully evading detection by EDR systems.

2. COLDRIVER's Tactical Evolution - The threat actor COLDRIVER, also known as Star Blizzard, SEABORGIUM, and more, intensifies its credential theft operations, deploying deceptive domains and sophisticated evasion tactics.

3. Lazarus Group's Espionage Continues - Operation Blacksmith, orchestrated by the Lazarus Group, targets Log4j vulnerabilities to deploy RATs, revealing a strategic shift in their espionage activities.

Keywords

cyber security
security news
cyber awareness