picture[SI-LAB] FlawedAmmyy Leveraging Undetected XLM Macros as an Infection Vehicle
FlawedAmmyy is leveraging undetected XLM macros as an Infection Vehicle to compromise user’s devices.

 

pictureFalha no Cobalt Strike usado para identificar servidores maliciosos
Falha no Cobalt Strike usado para identificar servidores maliciosos.

 

picturePDF zero-day quando acedido no Chrome recolhe dados dos utilizadores
Uma vulnerabilidade zero-day em ficheiros PDF recolhe dados dos utilizadores quando acedido no Google Chrome.

 

pictureRisk Management Processes And Concepts
Understanding the Context of Risk Management.

 

pictureCampanha de malspam explora falha do WinRAR para disseminar backdoor
Campanha de malspam explora falha do WinRAR para disseminar backdoor.

 

pictureRansomware B0r0nt0K infecta servidores Linux e Windows e exige um resgate de 75.000 dólares às vítimas
Ransomware B0r0nt0K infecta servidores Linux e Windows e exige um resgate de 75.000 dólares às vítimas.

Pedro Tavares

Pedro Tavares is a professional in the field of information security working as an Ethical Hacker/Pentester, Malware Researcher and also a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt. In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting (Kali Linux), malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer (Infosec. Resources Institute and Cyber Defense Magazine) and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. Read more here.