مجموعة TWINLOOT تستغل SharePoint و Teams لسرقة بيانات الاعتماد والتنقل عبر الشبكات
كشف باحثو الأمن السيبراني عن تفاصيل إطار عمل زرع Python غير موثق سابقًا يسمى TWINLOOT، والذي يستغل نقاط ضعف في SharePoint و Teams لسرقة بيانات الاعتماد والتنقل عبر الشبكات.
لماذا يهم هذا الخبر؟
استغلال الثقة
سياق الخبر
Cybersecurity researchers have disclosed details of a previously undocumented Python implant framework dubbed TWINLOOT. "TWINLOOT is a modular, PyArmor-hardened Python implant designed to operate its entire command-and-control infrastructure inside trusted Microsoft services," Ontinue said in a technical report shared with The Hacker News. "Tasking flows through SharePoint Online file
فتح الخبر الأصلي