Top Exploit Kit Activity Roundup
ID: 475e568d-8d12-504a-8f9f-1ace480ce693
STIX ID: report--475e568d-8d12-504a-8f9f-1ace480ce693
Feed Name: Zscaler Security Research Blog
This report from Zscaler ThreatLabZ analyzes spring 2016 activity of three major exploit kits—Angler, RIG, and Neutrino—detailing their distribution (malvertising, compromised sites, EITest gates), execution techniques (JS obfuscation, IFrame injections, AV/sandbox checks), geographic hit patterns, and observed payloads (CryptXXX, TeslaCrypt, Qbot, Gamarue, Tofsee, Panda Banker). It highlights Angler's rapid decline in mid-June 2016 with Neutrino and RIG filling the gap, provides visual telemetry (hits and heatmaps), and recommends blocking untrusted third-party scripts and suspicious ads as mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
