Cleafly researchers have observed the threat actor behind the "BRATA" banking trojan advancing the malware's capabilities and noted that the group's recent activity is now categorized.
A new Windows NTLM relay attack called DFSCoerce has been discovered that uses MS-DFSNM, Microsoft s Distributed File System, to completely take over a Windows domain.