A new cyber attack campaign is leveraging the PowerShell script associated with a legitimate red teaming tool to plunder NTLMv2 hashes from compromised Windows systems primarily located in Australia, Poland, and Belgium. The activity has been codenamed Steal-It by Zscaler ThreatLabz. "In this campaign, the threat actors steal and exfiltrate NTLMv2 hashes using customized versions of Nishang's
from The Hacker News https://ift.tt/TNGOIwS
via IFTTT
from The Hacker News https://ift.tt/TNGOIwS
via IFTTT
Cybercriminals Using PowerShell to Steal NTLMv2 Hashes from Compromised Windows
Reviewed by Fully Health Tips And Tricks 2020
on
September 13, 2023
Rating:
No comments: