Accelerating Analysis When It Matters
ID: 012d532c-e970-56cd-8a9e-095fe0dcc292
STIX ID: report--012d532c-e970-56cd-8a9e-095fe0dcc292
Feed Name: Palo Alto Networks Unit 42
Threat Score
Date Published: 2024-07-24
Date Updated: 2026-04-28
Author: Riley Porter, Micah Yates and Mark Lim
...
...
Unit 42 describes using automated malware configuration extraction (MCE) to rapidly triage 10 second-stage payloads found in a Bitbucket repository, identifying families including Lumma Stealer, Remcos RAT, Quasar RAT, Redline Stealer, and Vidar Stealer and extracting SHA256 hashes and C2 domains/IPs to enable rapid protections for customers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
