Archive

Research

Incident teardowns, detection engineering, reverse engineering and network forensics. Filtered to exfiltration.

tag: exfiltration1

AnalysisMembers

Case study: one appliance, and the disclosure that followed

CL0P against MOVEit Transfer, worked as a case rather than read as news. A zero-day in an internet-facing file transfer product, a web shell, and a scope question that has nothing to do with how many hosts were touched. Nine questions, and the answers are in the advisory.

about 1 hours of workCVE-2023-34362T1190T1505.003T1567

Full write-up available to members subscribers. See what is included.