Space Pirates Targets Russian IT Firms With New LuckyStrike Agent Malware (thehackernews.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 28 Feb 2025 11:58
https://sh.itjust.works/post/33565265

#cybersecurity

threaded - newest

verity_kindle@sh.itjust.works on 28 Feb 2025 12:57 next collapse

I’m ok with that. Go Space Pirates! 90% because of an appealing name, 10% because they’re targeting Russian companies. It’s shallow reasoning, but I stand by it.

Maeve@kbin.earth on 28 Feb 2025 13:12 next collapse

LuckyStrike Agent, a multi-functional .NET backdoor that uses Microsoft OneDrive for command-and-control (C2)...Erudite Mogwai began their journey in modifying this utility by cutting down the functionality they didn't need," Solar said. "They continued with minor edits, such as renaming functions and changing the sizes of structures (probably to knock down existing detection signatures). At the moment, the version of Stowaway used by this group can be called a full-fledged fork."

technocrit@lemmy.dbzer0.com on 28 Feb 2025 16:54 collapse

How “curious” that they don’t mention any state sponsors. They always mention state sponsors from the alt-empire. I guess it’s only the “bad guys” who engage in cyber attacks. \s \s \s