Threats Tagged 'usb-propagation'
View all threats tagged with 'usb-propagation'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'usb-propagation'
Click on any threat for detailed analysis and mitigation recommendations
Matryoshka #3/3: Gamaredon's Gammasteel Infostealer 0 Gamaredon's GammaSteel is a sophisticated infostealer malware used in espionage operations targeting Ukrainian government, military, and critical infrastructure. It operates primarily in memory, leveraging Windows DPAPI encryption and storing multiple payload functions in the registry. The malware collects data through timed drive scans, USB monitoring for air-gapped systems, and real-time file surveillance. Data exfiltration is conducted via legitimate S3-compatible cloud storage with fallback to attacker-controlled servers. The infection chain uses VBScript for evasion and Dead Drop Resolvers on platforms like Telegram and Mastodon for command and control configuration. It includes bidirectional backdoor capabilities allowing arbitrary remote code execution. The attacker infrastructure is highly automated, rotating servers approximately every 24 hours. Join the discussion | AlienVault OTX General | 06/04/2026, 13:57:26 UTC Added: 06/05/2026, 08:49:15 UTC |
Showing 1 to 1 of 1 result