Ddark3v3iniluvblue.hashnode.dev·13h ago · 4 min readMalOps Labs: Operation Silent Serpent The Lure Scenario An employee reported a strange email attachment. Your task is to analyze the extracted files and uncover the initial attack vector. Questions 1. What is the SHA256 hash of the decoy 00
Ddark3v3iniluvblue.hashnode.dev·15h ago · 11 min readMalOps Labs: Muddy WaterPhishing Triage Scenario It started with a single email. A crafted lure, a weaponized attachment, and a click — that's all it took. Behind the innocent-looking document hides a VBA macro that silently00
Ddark3v3iniluvblue.hashnode.dev·1d ago · 4 min readSee Attached Template: A Malicious docx With No MacrosAnother easy sample from Samplepedia. File Information: File Type: (.DOCX) Word Microsoft Office Open XML Format document MDS Hash: 7e9afffcd5105a119308bc5e1289fda4 SHA256 Hash: 29325e23a684f782db100
Ddark3v3iniluvblue.hashnode.dev·2d ago · 8 min readAura Wiper AnalysisThis is an easy sample from MalOps.io For initial triage, I usually look at strings found in the file, look at any interesting imports to understand some of the files capabilities as well. In addition00
Ddark3v3iniluvblue.hashnode.dev·2d ago · 5 min readShortcut to Nowhere (But Malware)This file is an easy sample from Samplepedia The file is an archive that contains two files a Windows shortcut file (lnk) and a Microsoft Word document (docx). 'CH - ULT Group Anti Fraud Agreement.pd00