Google Released Over 165 YARA Rules to Detect Cobalt Strike Components in Their Networks

By leveraging the Cobalt Strike set of components, Google has built a detection system that is capable of detecting these malicious variants in the wild at an extremely high degree of accuracy with YARA-based detection.  There are approximately ten to one hundred attack template binaries included in each Cobalt Strike version. An important aspect of Cobalt Strike is that it incorporates multiple software tools into one jar file that functions as a single tool.

Read full article on GBHackers

 


Date:

Categorie(s):