"Send me a quick text" Chaos is a new ransomware group making its mark with aggressive campaigns and calculated pressure on victims. What appears to be a fresh name is, in fact, a continuation of familiar strategies, designed to confuse analysts and buy the attackers more time. In this episode, we break down how Chaos positions itself in the ransomware landscape, why its approach is so disruptive, and what defenders can learn from the group’s focus on leverage, pressure, and rebranding. The s...
All content for CyberBrief Project is the property of Meni Tasa and is served directly from their servers
with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
"Send me a quick text" Chaos is a new ransomware group making its mark with aggressive campaigns and calculated pressure on victims. What appears to be a fresh name is, in fact, a continuation of familiar strategies, designed to confuse analysts and buy the attackers more time. In this episode, we break down how Chaos positions itself in the ransomware landscape, why its approach is so disruptive, and what defenders can learn from the group’s focus on leverage, pressure, and rebranding. The s...
How Hackers Used Social Media to Deploy Cobalt Strike
CyberBrief Project
6 minutes
1 month ago
How Hackers Used Social Media to Deploy Cobalt Strike
"Send me a quick text" Attackers abused phishing emails carrying shortcut files inside archives to deploy a legitimate crash-reporting executable paired with a malicious library. The library hijacked normal functions, retrieved encoded payloads hidden in GitHub, Quora, and Microsoft Tech Community profiles, and then redirected the victim system to GitHub raw content pages hosting encrypted shellcode. Once decrypted, the shellcode injected Cobalt Strike Beacon into memory, giving attackers ful...
CyberBrief Project
"Send me a quick text" Chaos is a new ransomware group making its mark with aggressive campaigns and calculated pressure on victims. What appears to be a fresh name is, in fact, a continuation of familiar strategies, designed to confuse analysts and buy the attackers more time. In this episode, we break down how Chaos positions itself in the ransomware landscape, why its approach is so disruptive, and what defenders can learn from the group’s focus on leverage, pressure, and rebranding. The s...