unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Seamlessly Integrate ANY.RUN’s Services into Your Infrastructure via SDK
ANY.RUN推出SDK工具,帮助用户更轻松地将产品集成到安全基础设施中。该工具支持自动化恶意软件分析、威胁情报查询等功能,并适用于Hunter和Enterprise计划用户。通过Python编程语言实现灵活集成,助力企业提升安全防御效率并降低成本。...
2025-4-17 11:47:38 | 阅读: 5 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
security
feeds
analysis
software
development
How Indicators of Compromise, Attack, and Behavior Help Spot and Stop Cyber Threats
文章介绍了网络安全中的三种关键指标:妥协指标(IOCs)、行为指标(IOBs)和攻击指标(IOAs)。它们分别用于检测已发生的攻击、识别恶意行为模式以及实时发现正在进行的攻击。这些指标在威胁检测、响应和预防中发挥重要作用。...
2025-4-16 12:47:40 | 阅读: 2 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
malicious
iobs
threats
ioas
behavioral
Malware Trends Report, Q1 2025: Get Your Copy
ANY.RUN发布2025年第一季度恶意软件趋势报告,基于15,000多个全球SOC团队的真实数据,分析恶意软件类型、家族、APT攻击及钓鱼工具包等关键威胁,并提供增强安全韧性的行动建议。该报告帮助组织节省研究时间并提升威胁检测能力。...
2025-4-15 13:32:6 | 阅读: 1 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
phishing
q1
resilience
q4
Malware Signatures: How Cybersecurity Teams Use Them to Catch Threats
文章探讨了恶意软件签名的作用与类型,包括静态、启发式和行为签名,并介绍了YARA和Suricata等工具如何利用这些签名检测威胁。ANY.RUN沙盒环境结合这些工具提供全面的威胁分析能力。...
2025-4-15 11:2:7 | 阅读: 3 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
suricata
threats
security
mutex
analysis
Why Practice Is Key to Training Top Malware Analysts and How ANY.RUN Supports It
ANY.RUN开发的Security Training Lab是一个实践导向的网络安全教育项目,结合教育理论与心理学原则,通过30小时学术内容和互动任务帮助学生掌握恶意软件分析技能。课程提供真实案例和ANY.RUN的Interactive Sandbox工具,支持学生在虚拟环境中分析真实威胁,并访问50万专业人士提交的恶意软件样本库。该项目旨在解决网络安全人才短缺问题,为高校提供现成解决方案,并培养具备实战能力的专业人才。...
2025-4-9 10:16:33 | 阅读: 6 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
security
analysis
threats
educational
How MSSP Expertware Uses ANY.RUN’s Interactive Sandbox for Faster Threat Analysis
Expertware, a cybersecurity firm, uses ANY.RUN's interactive sandbox to enhance malware analysis, phishing detection, and threat intelligence. The tool streamlines investigations, reduces response time, and provides detailed insights into attack chains. It also aids in training and collaboration among security teams....
2025-4-8 11:1:50 | 阅读: 3 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
security
threats
processes
malicious
Release Notes: Android VM, Pre-Installed Dev Tools, TI Reports & Enhanced Detection
ANY.RUN团队三月优化了沙盒平台与威胁情报服务,新增Android环境支持恶意软件分析、预装开发工具包,并更新了Suricata规则、行为签名和YARA规则。同时发布了三个新威胁情报报告。...
2025-4-3 10:46:32 | 阅读: 18 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
development
emerging
c2
How to Hunt and Investigate Linux Malware
文章介绍了Linux恶意软件的威胁及其分析方法。通过TI Lookup工具,可以查找和研究Linux恶意软件如XORbot、Linux Stealer和Mirai Botnet等。与Windows不同,Linux恶意软件主要针对服务器而非桌面用户。企业应使用工具如TI Lookup进行主动安全防御。...
2025-4-2 13:31:44 | 阅读: 0 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
analysis
stealer
proactive
xorbot
Salvador Stealer: New Android Malware That Phishes Banking Details & OTPs
这篇文章介绍了一种名为Salvador Stealer的安卓恶意软件,其伪装成银行应用窃取用户敏感信息(如手机号、Aadhaar号码、PAN卡详情等)。该恶意软件通过内置钓鱼网站诱导用户输入凭证,并立即将数据发送至C2服务器及Telegram bot。此外,它利用短信权限拦截OTP验证码,并通过动态短信转发和HTTP POST请求确保数据外泄。其持久性机制使其能在设备重启后恢复运行,并暴露了攻击者的基础设施联系信息。...
2025-4-1 11:3:50 | 阅读: 7 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
phishing
apk
analysis
salvador
cloud
ANY.RUN Wins Globee Awards 2025 for Outstanding Threat Detection and Response
ANY.RUN凭借其旗舰产品Interactive Sandbox在2025年Globee Awards中荣获杰出威胁检测与响应类银奖。该产品经全球1,500多位专家评审认可为最佳网络安全解决方案之一。ANY.RUN帮助全球超50万名网络安全专业人士分析恶意软件威胁,并提供威胁情报服务以提升安全防护能力。...
2025-3-28 09:3:50 | 阅读: 2 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
awards
analysis
winners
How We Enrich TI Lookup and Feeds with Fresh Threat Data from 15,000 Organizations
ANY.RUN通过 Threat Intelligence Lookup 和 TI Feeds 提供实时网络威胁情报,基于全球数百万次沙盒分析和研究人员贡献的数据。这些情报包括IOCs、IOAs、IOBs和TTPs等,帮助组织快速检测攻击、提升SOC效率并降低损失。...
2025-3-27 11:16:42 | 阅读: 0 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
feeds
ransomware
interlock
nitrogen
GorillaBot: Technical Analysis and Code Similarities with Mirai
GorillaBot 是基于 Mirai 的新僵尸网络,在全球发起超 30 万次攻击,影响多个行业。采用自定义加密和反调试技术,通过 XTEA 加密与 C2 通信,并使用 SHA-256 鉴权。...
2025-3-25 12:16:33 | 阅读: 6 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
c2
gorillabot
analysis
encryption
mohamed
ANY.RUN Wins in the Best Threat Intelligence Service Category at Cybersecurity Excellence Awards 2025
ANY.RUN在2025年网络安全卓越奖中荣获威胁情报类奖项,其TI Lookup服务凭借加速研究、提供最新威胁信息及节省资源的优势获奖。主办方赞扬其对行业贡献,并感谢支持者与合作伙伴。...
2025-3-20 08:49:33 | 阅读: 6 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
security
excellence
awards
victory
Decoding a Malware Analyst: Essential Skills and Expertise
恶意软件分析是一个高需求但竞争激烈的职业,需要技术技能(如静态和动态分析)、分析思维(问题解决)、沟通能力以及适应性和创造力。教育机构提供的课程如ANY.RUN的Security Training Lab对培养这些技能至关重要。...
2025-3-19 13:57:13 | 阅读: 0 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
security
educational
Expose Android Malware in Seconds: ANY.RUN Sandbox Now Supports Real-Time APK Analysis
ANY.RUN新增对Android OS的支持,在交互式沙盒中实现真实ARM环境下的恶意软件分析。该功能帮助安全团队快速准确识别威胁并生成详细报告。...
2025-3-18 11:32:46 | 阅读: 13 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
security
apk
coper
New Pre-Installed Dev Tools for Deep Sandbox Malware Analysis
ANY.RUN沙盒新增预装开发软件集,支持虚拟机中快速加载专用工具包,提升对Python和Node.js恶意软件的分析能力。包含DebugView、DIE、dnSpy等工具,助力高级调试和逆向工程。企业用户可轻松配置使用,提升威胁检测效率。...
2025-3-13 10:32:54 | 阅读: 3 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
software
threats
hxd
python
AI Safety: Key Threats and Solutions
人工智能在日常生活中越来越普及,带来了自动化、通信和网络安全的进步。然而,随着AI模型的复杂化,新的威胁也随之出现。文章探讨了三个主要风险:AI驱动的钓鱼和恶意软件生成、AI被用于意见塑造和不道德目的、以及无意中导致的AI失败带来的危害。防御策略包括红队测试、动态防护和透明度措施。...
2025-3-12 12:32:40 | 阅读: 6 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
phishing
harmful
safeguards
security
threats
5 Common Evasion Techniques in Malware
Cybercriminals are con...
2025-3-11 14:5:6 | 阅读: 3 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
malicious
security
attackers
analysis
windows
How Transport Company Gets Real-Time IOC and IOB Updates on Active Cyber Attacks
How can security teams...
2025-3-5 11:17:33 | 阅读: 1 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
security
attackers
domainname
Release Notes: Threat Intelligence Reports, New Website Design, & Enhanced Detection
Hey, cybersecurity ent...
2025-3-4 11:17:38 | 阅读: 3 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
security
mutex
detections
Previous
1
2
3
4
5
6
7
8
Next