Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

GADOLINIUM Using Cloud Services and Open Source Tools

released on 2020-09-24 @ 07:28:49 PM
"Recently, the Microsoft Threat Intelligence Center (MSTIC) observed the evolution of attacker techniques by an actor we call GADOLINIUM using cloud services and open source tools to enhance weaponization of their malware payload, attempt to gain command and control all the way to the server, and to obfuscate detection. These attacks were delivered via spear-phishing emails with malicious attachments and detected and blocked by Microsoft 365 Defender, formerly Microsoft Threat Protection (MTP), and able to be detected using Azure Sentinel."