
Bank Security
@bank_security
ID: 1886777581
https://bank-security.medium.com/ 20-09-2013 14:37:43
3,3K Tweet
39,39K Followers
336 Following



Hey :) We published a #Qakbot infrastructure analysis bringing some cool findings. #QakBot C2 servers are not separated by affiliate ID, identification of three upstream C2 servers located in Russia, upstream activity,etc: team-cymru.com/post/visualizi… IOCs included 🫡 Team Cymru Threat Research




Fortinet fixes critical RCE flaw in Fortigate SSL-VPN devices, patch now - Lawrence Abrams bleepingcomputer.com/news/security/…

At least 20.3K Fortinet devices likely vulnerable to CVE-2023-27997 (heap buffer overflow in sslvpn pre-authentication) seen in our scans (on 2023-06-12) Fortinet advisory: fortiguard.com/psirt/FG-IR-23… Dashboard: dashboard.shadowserver.org/statistics/com… Make sure to update your FortiOS/FortiProxy!



🔍Deep-dive on #MustangPanda indicators found in Trend Micro's latest and awesome blog 🐼 📍5.188.33.190 (hostname mail.mofa[.]gov[.]tw) revealed an intriguing ssl cert. A #Shodan pivot unveiled another hit: 23.106.123.59 which also had hostname mail.mofa[.]gov[.]tw.
![Chris Duggan (@tlp_r3d) on Twitter photo 🔍Deep-dive on #MustangPanda indicators found in <a href="/TrendMicro/">Trend Micro</a>'s latest and awesome blog 🐼
📍5.188.33.190 (hostname mail.mofa[.]gov[.]tw) revealed an intriguing ssl cert. A #Shodan pivot
unveiled another hit: 23.106.123.59 which also had hostname mail.mofa[.]gov[.]tw. 🔍Deep-dive on #MustangPanda indicators found in <a href="/TrendMicro/">Trend Micro</a>'s latest and awesome blog 🐼
📍5.188.33.190 (hostname mail.mofa[.]gov[.]tw) revealed an intriguing ssl cert. A #Shodan pivot
unveiled another hit: 23.106.123.59 which also had hostname mail.mofa[.]gov[.]tw.](https://pbs.twimg.com/media/FyqSUsDXoAAC8ME.jpg)










I'm a huge fan of using Obsidian for everything from a knowledgebase through to a shopping list. Bank Security has done a great job in this post of showing how effective it can be as a CTI tool: bank-security.medium.com/mastering-cybe…