Episodios

  • Hide Your RDP: Password Spray Leads to RansomHub Deployment
    Jun 30 2025

    Report: ⁠⁠⁠⁠https://thedfirreport.com/2025/06/30/hide-your-rdp-password-spray-leads-to-ransomhub-deployment

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠⁠⁠

    Más Menos
    6 m
  • DFIR Discussions: Another Confluence Bites the Dust: Falling to ELPACO-team Ransomware
    Jun 16 2025

    We dive into our latest public report with Randy Pargman, Jake Ouellette, Kostas T., and Mangatas Tondang.

    Report: https://thedfirreport.com/2025/05/19/another-confluence-bites-the-dust-falling-to-elpaco-team-ransomware/

    Contact Us: ⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠

    Music by FASSounds from Pixabay

    Más Menos
    38 m
  • Another Confluence Bites the Dust: Falling to ELPACO-team Ransomware
    May 19 2025

    Report: ⁠https://thedfirreport.com/2025/05/19/another-confluence-bites-the-dust-falling-to-elpaco-team-ransomware/

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠⁠


    Más Menos
    6 m
  • Navigating Through The Fog
    Apr 28 2025

    Report: ⁠https://thedfirreport.com/2025/04/28/navigating-through-the-fog/

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠⁠

    Más Menos
    4 m
  • Fake Zoom Ends in BlackSuit Ransomware
    Mar 31 2025

    Report: https://thedfirreport.com/2025/03/31/fake-zoom-ends-in-blacksuit-ransomware/

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠

    Más Menos
    6 m
  • Confluence Exploit Leads to LockBit Ransomware
    Feb 24 2025

    Report: https://thedfirreport.com/2025/02/24/confluence-exploit-leads-to-lockbit-ransomware

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠

    Más Menos
    6 m
  • Cobalt Strike and a Pair of SOCKS Lead to LockBit Ransomware
    Jan 27 2025

    Report: ⁠⁠https://thedfirreport.com/2025/01/27/cobalt-strike-and-a-pair-of-socks-lead-to-lockbit-ransomware/

    Contact Us: ⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠⁠⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠⁠⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠⁠



    Más Menos
    8 m
  • DFIR Discussions: The Curious Case of an Egg-Cellent Resume
    Jan 20 2025

    We discuss our latest report "The Curious Case of an Egg-Cellent Resume"

    Host: ⁠⁠⁠⁠@Kostastsale⁠⁠⁠⁠

    Analysts: ⁠⁠⁠⁠⁠⁠@_pete_0, Zach Stanford (aka @svch0st)

    Report: ⁠⁠⁠⁠https://thedfirreport.com/2024/12/02/the-curious-case-of-an-egg-cellent-resume/

    Contact Us: ⁠⁠⁠⁠https://thedfirreport.com/contact/⁠⁠⁠⁠

    Services: ⁠⁠⁠⁠https://thedfirreport.com/services/⁠⁠⁠⁠

    Music by FASSounds from Pixabay

    Más Menos
    40 m