WithSecure Labs.
Most up-to-date information regarding WithSecure
Blog post
GREYVIBE: A Russia-nexus group leveraging AI across state-aligned operations
Publications
To the past and beyond: Andariel’s latest arsenal and cyberattacks
WithSecure proactively identified and notified a European customer belonging to the public/legal sector of a breach attributed with high confidence to the Andariel group, a state-sponsored cyber group linked to the Reconnaissance General Bureau (RGB) 3rd bureau of Democratic People’s Republic of Korea (DPRK).
Reports
Time to next exploit
Organizations are facing an attack surface that is not only expanding at an unprecedented rate but also becoming more difficult to manage using traditional security approaches.
Publications
WEEVILPROXY
WithSecure™ has uncovered a highly sophisticated and evasive malware campaign that has flown under the radar since March 2024.
Reports
KeePass trojanised in advanced malware campaign
Named KeeLoader, this modified installer was signed with trusted certificates and distributed via malvertising and typo-squat domains to victims across Europe.
Reports
Cyber Threat Landscape – European Mid Market 2025
The "Cyber Threat Landscape: European Mid Market 2025" report provides a comprehensive analysis of the evolving cyber threat environment, which has been specifically tailored for European mid-market organizations.
Reports
Ransomware Landscape H1/2024
In our latest review of the Ransomware Landscape for H1 2024, WithSecure Intelligence researchers take a deep dive into the major events that have shaped the ransomware space over the past few months.
Publications
Mass exploitation: The vulnerable edge of enterprise security
The cyber threat landscape in 2023 and so far 2024 has been dominated by mass exploitation.
Publications
Kapeka
The malware, which we are calling "Kapeka", is a flexible backdoor with all the necessary functionalities to serve as an early-stage toolkit for its operators, and also to provide long-term access to the victim estate.
Presentation
Meet the Ducks
Social media presents the biggest amalgamation of people and businesses in today’s connected world, with an estimated 4.9 billion people using these services.
Publications
EDR bypassing via memory manipulation techniques
Endpoint Detection & Response systems (EDR), delivered by in-house teams or as part of a managed service, are a feature of modern intrusion detection and remediation operations.
Publications
Silkloader
Commercial and open-source command-and-control (C2) frameworks have become a staple in most adversary toolkits, with Cobalt Strike (CS) being one of the most popular.
Not Found
No results found, please try something else!