A Case Of Keitaro (featuring RIG And Nuclear)
ID: 78509d0f-b423-5252-a484-0bc91a365b0f
STIX ID: report--78509d0f-b423-5252-a484-0bc91a365b0f
Feed Name: Zscaler Security Research Blog
Threat Score
Zscaler ThreatLabZ observed a spike in RIG and Nuclear exploit kit activity being routed through Keitaro TDS campaigns; the analysis details Keitaro gate capabilities and misconfigurations, RIG and Nuclear gate and landing-page behaviours, exploitation of CVE-2014-6332 and CVE-2015-5122, and delivery of malware (Tofsee and Dofoil), with examples of URL/gate patterns and payload obfuscation techniques.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
