
LockBit-Ransomware-Analysis
Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).
data-exfiltrationdigital-forensicseducation+8

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

Apache ActiveMQ (CVE-2023-46604) zafiyetinden LockBit ransomware aşamasına uzanan 419 saatlik sızma vakasının uçtan uca analizi, SIEM korelasyon…

it's a CVE-2023-28252 (Patched), but feel free to use it for check any outdated software or reseach

Conducted a full SOC investigation into a Conti ransomware compromise of an Exchange server using Splunk 8.2.2. Analysed 28,145 events across Windows…