Explore tweets tagged as #RedCurl
@threatintel
Threat Intelligence
3 days
#ThreatProtection Recent #RedCurl (aka #EarthKapre) #APT activity, read more about Symantec's protection: #malware.
0
0
1
@YungBinary
YungBinary
9 days
When a CV is more than a CV and leads to #RedCurl / #EarthKapre APT 😱 see my full breakdown from side-loading through a legitimate Adobe application, to data exfil through PowerShell:.
1
7
31
@esthreat
eSentire Threat Intel
9 days
Check out our latest blog on #EarthKapre #RedCurl #espionage . IOCs:
0
4
12
@HuntressLabs
Huntress
1 month
We’ve been working to break down #RedCurl’s unique tactics, show how they match past attacks, and share tips on spotting similar threats—from any adversary. Read the analysis from @Laughing_Mantis, @nosecurething, and @birchb0y here:
2
3
16
@HuntressLabs
Huntress
1 month
🔍 In late 2024, we spotted some suspicious activity across multiple Canadian organizations pointing to #RedCurl, an APT group with a history of cyber espionage. 🕵️‍♀️ This wasn’t new—RedCurl’s been active since at least November 2023:.
1
5
35
@tubblog
Richard Tubb
1 month
🎯 The hunt continues! @HuntressLabs investigates RedCurl 2, a sophisticated cyber espionage group targeting businesses worldwide. Learn about their tactics and how to stay protected. #Cybersecurity #RedCurl #Huntress #ManagedServices 🛡️🔍. Read more:
Tweet media one
0
0
1
@TweetThreatNews
Cybersecurity News Everyday
1 month
Cyberespionage activities linked to the APT group RedCurl have been detected, targeting Canadian organizations in finance, tourism, and consulting. Unique tactics include PowerShell scripts for stealthy data exfiltration. 🇨🇦 #RedCurl #CyberEspionage #Thr
Tweet media one
0
0
0
@kanenas_gr
KANENAS
1 month
#CyberEspionage - Good source of IPs & Hostnames to block from your #Network for #RedCurl group Command and Control #malware ( full list on the blog post ) thanks to @HuntressLabs
Tweet media one
Tweet media two
Tweet media three
@birchb0y
alden
1 month
reminder to say happy new years to the russian espionage groups in ur network 🥰🇷🇺. @nosecurething (🐐), @Laughing_Mantis (🐐), and I just dropped a new blog detailing a series of redcurl intrusions across several huntress customer environments 😳.
0
0
1
@scythe_io
SCYTHE
9 months
#DLP #CyberCriminals and workshops, OH MY!.⚡️🦄This month's #ThreatThursday with the SCYTHE 🧨TNT team @TCraf7 + @1qazCasey delves into Data Loss Prevention (DLP), the #Redcurl cybercrime group, and #PowerShell Abuse. 💥Full deets:
Tweet media one
0
3
4
@MalwarePatrol
Malware Patrol
11 months
@TrendMicroRSRCH
Trend Micro Research
11 months
Earth Kapre, aka RedCurl, is an espionage group that conducts phishing campaigns around the world. Using malicious email attachments (.iso and .img), it infects systems and steals sensitive data. Find out more in our recent blog entry: ⬇️
Tweet media one
0
0
1
@FindSecCyber
FindSec 🇨🇦
11 months
🔴 Alert: #RedCurl cybercrime group exploiting Windows Program Compatibility Assistant for malicious activities, bypassing security measures to execute harmful commands. Vigilance and updated security protocols are crucial to thwart such sophisticated threats. #Cybersecurity
Tweet media one
0
0
1
@twelvesec
twelvesec
11 months
#RedCurl is leveraging a legitimate #Microsoft #Windows component called the Program Compatibility Assistant to execute #malicious commands. #CyberSecurity #infosec #cybercrime.
Tweet media one
0
0
0
@omvapt
omvapt
11 months
Tweet media one
0
0
0
@SRA_ThreatWatch
SRA_ThreatWatch
1 year
#Russian #Cybercrime Group #RedCurl Exploits Legitimate #Windows Tool for #CorporateEspionage.
0
0
0
@SalvadorCloud
Salvador Cloud Ltd
1 year
"Russian-speaking cybercrime group, #RedCurl, is exploiting a Microsoft Windows feature, the Program Compatibility Assistant, for corporate espionage. Stay vigilant. #CyberSecurity #MicrosoftWindows 💻🕵️"
0
0
0
@ReconBee
ReconBee
1 year
0
0
1
@SecuriTricks
Julien
1 year
🚨 New attack report 🚨 . 🕷️Unveiling Earth Kapre aka RedCurl’s Cyberespionage Tactics With Trend Micro MDR, Threat Intelligence [Monday, March 11, 2024]. #AttackReport #Cybersecurity #cyberespionage #redcurl #earthkapre #redwolf.
0
0
0
@omvapt
omvapt
1 year
Unveiling #Earth_Kapre aka #RedCurl’s #Cyberespionage Tactics With #MDR, #Threat_Intelligence .
Tweet media one
0
0
0