Fortinet Threat Research.
Fortinet Threat Research Blog Official blog feed of Fortinet
- FortiSandbox 5.0 Detects Evolving Snake Keylogger Varianton February 18, 2025 at 2:00 pm
Explore how FortiSandbox 5.0 detected this malware, the behavioral indicators it leveraged for identification, and Snake Keylogger’s technique to evade detection and analysis.
- Ransomware Roundup – Lynxon February 14, 2025 at 2:00 pm
Get insights into the Lynx ransomware, which is considered the successor to the INC ransomware. This double-extortion ransomware has threatened more than 90 organizations worldwide, including those in the healthcare and energy sectors. Learn more.
- Analyzing ELF/Sshdinjector.A!tr with a Human and Artificial Analyston February 4, 2025 at 2:00 pm
FortiGuard Labs reverse engineers a malware’s binaries to look into what the malware is actually doing.
- Coyote Banking Trojan: A Stealthy Attack via LNK Fileson January 30, 2025 at 2:00 pm
FortiGuard Labs observes a threat actor using a LNK file to deploy Coyote attacks, unleashing malicious payloads and escalating the risk to financial cybersecurity.
- Deep Dive Into a Linux Rootkit Malwareon January 13, 2025 at 2:00 pm
An in-depth analysis of how a remote attacker deployed a rootkit and a user-space binary file by executing a shell script.
- Phish-free PayPal Phishingon January 8, 2025 at 2:00 pm
An example of a recent phishing attempt and how to spot the obvious phishing tell-tales.
- Catching “EC2 Grouper”- no indicators required!on December 30, 2024 at 4:00 pm
Get detailed tactics associated with EC2 Grouper and how Lacework FortiCNAPP can be leveraged to detect this threat.
- Botnets Continue to Target Aging D-Link Vulnerabilitieson December 26, 2024 at 9:42 pm
FortiGuard Labs recently noticed that attackers still use and deliver two different botnets via D-Link exposing a HNAP interface weakness. Learn more.
- Analyzing Malicious Intent in Python Code: A Case Studyon December 23, 2024 at 6:00 pm
In this FortiGuard analysis, we examine the Python scripts behind two malicious packages, outline their behaviors, and provide insights into their potential impact.
- Fortinet Contributes to Major Cybercrime Operation Arrestson December 3, 2024 at 2:00 pm
Fortinet contributes to major INTERPOL and AFRIPOL cybercrime operations arrests of members of cybercrime groups operating across Africa. These individuals specialize in ransomware, digital extortion, online scams, and Business Email Compromise (BEC) attacks.