top of page

Security's Achilles' Heel: Vulnerable Drivers on the Prowl
A notable trend in cyber threats nowadays is the exploitation of vulnerabilities in drivers through the Bring Your Own Vulnerable Driver...
Security Joes
Jul 15, 202414 min read
3,117 views
0 comments

Mission "Data Destruction": A Large-scale Data-Wiping Campaign Targeting Israel
Mission "Data Destruction": A Large-scale Data-Wiping Campaign Targeting Israel
Security Joes
Nov 10, 20235 min read
2,763 views
0 comments

BiBi-Linux: A New Wiper Dropped By Pro-Hamas Hacktivist Group
Security Joes Incident Response team volunteered to assist Israeli companies during the times of war between the state of Israel and the...
Security Joes
Oct 30, 20235 min read
14,891 views
0 comments

New Attack Vector In The Cloud: Attackers caught exploiting Object Storage Services
Security Joes Incident Response team recently became aware of a set of relatively new CVEs that were released at the end of March 2023....
Security Joes
Sep 4, 202318 min read
9,887 views
0 comments

Process Mockingjay: Echoing RWX In Userland To Achieve Code Execution
Our research team is committed to continuously identifying potential security vulnerabilities and techniques that threat actors may...
Security Joes
Jun 27, 202314 min read
25,533 views
0 comments

Operation Ice Breaker Targets The Gam(bl)ing Industry Right Before It's Biggest Gathering
In September of last year, our Incident Response team was called to an incident that was identified as an attempt of social engineering...
Security Joes
Feb 1, 202313 min read
7,038 views
0 comments

Raspberry Robin Detected ITW Targeting Insurance & Financial Institutes In Europe
Recent attacks documented in previous months seem to be orchestrated by hacking groups using a framework called Raspberry Robin. This...
Security Joes
Jan 2, 20238 min read
9,139 views
0 comments

Dissecting PlugX To Extract Its Crown Jewels
PlugX is a malware family first spotted in 2008. It is a Remote Access Trojan that has been used by several threat actors and provides...
Security Joes
Sep 14, 20221 min read
540 views
0 comments


Backdoor Via XFF - Mysterious Threat Actor Under Radar
Our incident response team caught a strange-looking Webshell activity on a server that was running an internal web application. It raised...
Security Joes
Jun 15, 20221 min read
205 views
0 comments

Sockbot in Goland - Linking APT Actors With Ransomware Gangs
Our incident response team had responded to malicious activity in one of our clients' network infrastructure. A compromised Secure Access...
Security Joes
Mar 9, 20221 min read
136 views
0 comments

Aura Over Rafah, Revealing Hackers Responsible for SMShing
Scams have been spreading rapidly over the wire as financial gain is around the corner for hackers who go after the weakest link -...
Security Joes
Aug 25, 20211 min read
57 views
0 comments

Secrets Behind EVER101 Ransomware
A victim called the incident response teams of Global Threat Center, reporting a seemingly new stream of ransomware attack. Upon...
Security Joes
Jun 22, 20211 min read
61 views
0 comments

Cuba Ransomware On A Roll
At the end of 2020, our team made up of SecurityJoes and Profero incident responders, led an investigation into a complex attack in which...
Security Joes
May 5, 20211 min read
100 views
0 comments

APT27 Turns To Ransomware
At the peak of the COVID-19 pandemic and economic crisis, our Global Incident Response and Cyber Crisis Management teams were engaged on...
Security Joes
Jan 4, 20211 min read
82 views
0 comments
bottom of page