Full article87 words · extracted from blog.talosintelligence.com · click to collapse
April 2, 2026 06:00
Qilin EDR killer infection chain
This blog provides an in-depth analysis of the malicious “msimg32.dll” used in Qilin ransomware attacks, which is a multi-stage infection chain targeting EDR systems.
May 30, 2024 08:01
LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoader
Cisco Talos is disclosing a new suspected data theft campaign, active since at least 2021, we attribute to an advanced persistent threat actor (APT) we’re calling “LilacSquid.” Multiple TTPs utilized in this campaign bear some overlap with North Korean APT groups.
Text extracted automatically; images, tables and formatting may be missing. Original: https://blog.talosintelligence.com/category/malware/