unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Malware Signatures: How Cybersecurity Teams Use Them to Catch Threats
文章探讨了恶意软件签名的作用与类型,包括静态、启发式和行为签名,并介绍了YARA和Suricata等工具如何利用这些签名检测威胁。ANY.RUN沙盒环境结合这些工具提供全面的威胁分析能力。...
2025-4-15 11:2:7 | 阅读: 55 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
suricata
threats
security
mutex
analysis
Why Practice Is Key to Training Top Malware Analysts and How ANY.RUN Supports It
ANY.RUN开发的Security Training Lab是一个实践导向的网络安全教育项目,结合教育理论与心理学原则,通过30小时学术内容和互动任务帮助学生掌握恶意软件分析技能。课程提供真实案例和ANY.RUN的Interactive Sandbox工具,支持学生在虚拟环境中分析真实威胁,并访问50万专业人士提交的恶意软件样本库。该项目旨在解决网络安全人才短缺问题,为高校提供现成解决方案,并培养具备实战能力的专业人才。...
2025-4-9 10:16:33 | 阅读: 59 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
security
analysis
threats
educational
How MSSP Expertware Uses ANY.RUN’s Interactive Sandbox for Faster Threat Analysis
Expertware, a cybersecurity firm, uses ANY.RUN's interactive sandbox to enhance malware analysis, phishing detection, and threat intelligence. The tool streamlines investigations, reduces response time, and provides detailed insights into attack chains. It also aids in training and collaboration among security teams....
2025-4-8 11:1:50 | 阅读: 43 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
security
threats
processes
malicious
Release Notes: Android VM, Pre-Installed Dev Tools, TI Reports & Enhanced Detection
ANY.RUN团队三月优化了沙盒平台与威胁情报服务,新增Android环境支持恶意软件分析、预装开发工具包,并更新了Suricata规则、行为签名和YARA规则。同时发布了三个新威胁情报报告。...
2025-4-3 10:46:32 | 阅读: 61 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
development
emerging
c2
How to Hunt and Investigate Linux Malware
文章介绍了Linux恶意软件的威胁及其分析方法。通过TI Lookup工具,可以查找和研究Linux恶意软件如XORbot、Linux Stealer和Mirai Botnet等。与Windows不同,Linux恶意软件主要针对服务器而非桌面用户。企业应使用工具如TI Lookup进行主动安全防御。...
2025-4-2 13:31:44 | 阅读: 38 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
analysis
stealer
proactive
xorbot
Salvador Stealer: New Android Malware That Phishes Banking Details & OTPs
这篇文章介绍了一种名为Salvador Stealer的安卓恶意软件,其伪装成银行应用窃取用户敏感信息(如手机号、Aadhaar号码、PAN卡详情等)。该恶意软件通过内置钓鱼网站诱导用户输入凭证,并立即将数据发送至C2服务器及Telegram bot。此外,它利用短信权限拦截OTP验证码,并通过动态短信转发和HTTP POST请求确保数据外泄。其持久性机制使其能在设备重启后恢复运行,并暴露了攻击者的基础设施联系信息。...
2025-4-1 11:3:50 | 阅读: 65 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
phishing
apk
analysis
salvador
cloud
ANY.RUN Wins Globee Awards 2025 for Outstanding Threat Detection and Response
ANY.RUN凭借其旗舰产品Interactive Sandbox在2025年Globee Awards中荣获杰出威胁检测与响应类银奖。该产品经全球1,500多位专家评审认可为最佳网络安全解决方案之一。ANY.RUN帮助全球超50万名网络安全专业人士分析恶意软件威胁,并提供威胁情报服务以提升安全防护能力。...
2025-3-28 09:3:50 | 阅读: 46 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
awards
analysis
winners
How We Enrich TI Lookup and Feeds with Fresh Threat Data from 15,000 Organizations
ANY.RUN通过 Threat Intelligence Lookup 和 TI Feeds 提供实时网络威胁情报,基于全球数百万次沙盒分析和研究人员贡献的数据。这些情报包括IOCs、IOAs、IOBs和TTPs等,帮助组织快速检测攻击、提升SOC效率并降低损失。...
2025-3-27 11:16:42 | 阅读: 38 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
feeds
ransomware
interlock
nitrogen
GorillaBot: Technical Analysis and Code Similarities with Mirai
GorillaBot 是基于 Mirai 的新僵尸网络,在全球发起超 30 万次攻击,影响多个行业。采用自定义加密和反调试技术,通过 XTEA 加密与 C2 通信,并使用 SHA-256 鉴权。...
2025-3-25 12:16:33 | 阅读: 59 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
c2
gorillabot
analysis
encryption
mohamed
ANY.RUN Wins in the Best Threat Intelligence Service Category at Cybersecurity Excellence Awards 2025
ANY.RUN在2025年网络安全卓越奖中荣获威胁情报类奖项,其TI Lookup服务凭借加速研究、提供最新威胁信息及节省资源的优势获奖。主办方赞扬其对行业贡献,并感谢支持者与合作伙伴。...
2025-3-20 08:49:33 | 阅读: 47 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
security
excellence
awards
victory
Decoding a Malware Analyst: Essential Skills and Expertise
恶意软件分析是一个高需求但竞争激烈的职业,需要技术技能(如静态和动态分析)、分析思维(问题解决)、沟通能力以及适应性和创造力。教育机构提供的课程如ANY.RUN的Security Training Lab对培养这些技能至关重要。...
2025-3-19 13:57:13 | 阅读: 42 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
security
educational
Expose Android Malware in Seconds: ANY.RUN Sandbox Now Supports Real-Time APK Analysis
ANY.RUN新增对Android OS的支持,在交互式沙盒中实现真实ARM环境下的恶意软件分析。该功能帮助安全团队快速准确识别威胁并生成详细报告。...
2025-3-18 11:32:46 | 阅读: 64 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
threats
security
apk
coper
New Pre-Installed Dev Tools for Deep Sandbox Malware Analysis
ANY.RUN沙盒新增预装开发软件集,支持虚拟机中快速加载专用工具包,提升对Python和Node.js恶意软件的分析能力。包含DebugView、DIE、dnSpy等工具,助力高级调试和逆向工程。企业用户可轻松配置使用,提升威胁检测效率。...
2025-3-13 10:32:54 | 阅读: 47 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
software
threats
hxd
python
AI Safety: Key Threats and Solutions
人工智能在日常生活中越来越普及,带来了自动化、通信和网络安全的进步。然而,随着AI模型的复杂化,新的威胁也随之出现。文章探讨了三个主要风险:AI驱动的钓鱼和恶意软件生成、AI被用于意见塑造和不道德目的、以及无意中导致的AI失败带来的危害。防御策略包括红队测试、动态防护和透明度措施。...
2025-3-12 12:32:40 | 阅读: 63 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
phishing
harmful
safeguards
security
threats
5 Common Evasion Techniques in Malware
Cybercriminals are con...
2025-3-11 14:5:6 | 阅读: 43 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
malicious
security
attackers
analysis
windows
How Transport Company Gets Real-Time IOC and IOB Updates on Active Cyber Attacks
How can security teams...
2025-3-5 11:17:33 | 阅读: 49 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
security
attackers
domainname
Release Notes: Threat Intelligence Reports, New Website Design, & Enhanced Detection
Hey, cybersecurity ent...
2025-3-4 11:17:38 | 阅读: 53 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
threats
security
mutex
detections
Enriching ANY.RUN’s TI Feeds with Unique IOCs: How It Works
ANY.RUN的威胁情报 feeds 提供最新的妥协指标(IOCs),包括恶意IP、域名、URL和文件哈希等,帮助安全团队快速检测和应对攻击。这些数据来自全球50多万研究人员上传的真实恶意软件样本,并通过提取恶意软件配置和使用Suricata规则分析网络流量获取独特指标。feeds还提供威胁评分(如高度可靠100分),帮助组织提升威胁狩猎、警报分类和事件响应能力。...
2025-2-27 14:1:32 | 阅读: 68 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
feeds
threats
suricata
malicious
c2
Learn to Analyze Real-World Cyber Threats with Security Training Lab
ANY.RUN推出Security Training Lab课程,提供30小时学术内容和实践任务,教授恶意软件分析技能。学生通过学习静态分析、动态分析、加密技术及行为识别等方法,掌握应对现实威胁的能力。课程适合学生和教育机构,助力职业发展。...
2025-2-26 11:1:43 | 阅读: 65 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
analysis
security
threats
malicious
Malware Traffic Analysis in Linux: Hands-on Guide with Examples
文章介绍了网络流量分析在检测恶意软件中的作用,包括DDoS攻击、C2通信、数据外泄等常见威胁类型,并列举了常用工具如Wireshark和ANY.RUN沙盒。ANY.RUN通过实时监控和自动化威胁检测帮助提升网络安全能力。...
2025-2-25 11:31:41 | 阅读: 77 |
收藏
|
Over Security - Cybersecurity news aggregator - any.run
network
analysis
malicious
suricata
threats
Previous
10
11
12
13
14
15
16
17
Next