#CobaltStrike
Malware/Tool
2019-12-11 • ROPPING ANCHOR: FROM A TRICKBOT INFECTION TO THE DISCOVERY OF THE ANCHOR MALWARE
Cobalt Strike is a penetration-testing framework used by the attackers for post-exploitation. In the observed TrickBot intrusion, Meterpreter injected Cobalt Strike payloads into rundll32.exe, after which its modules helped enumerate Active Directory and domain-controller information.
-
6
Tagged Reports
-
6
Unique Authors
-
1,084
Active Days