Raspberry Robin observed spreading via Windows Script Files
The HP Threat Research team says security pros should take note because Raspberry Robin has been used to deliver multiple families of malware – and as a precursor to ransomware.
Stay updated with breaking news from Raspberry Robin. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
The HP Threat Research team says security pros should take note because Raspberry Robin has been used to deliver multiple families of malware – and as a precursor to ransomware.
A prolific but previously hidden threat actor turns public vulnerabilities into working exploits before companies have time to patch.
The developers behind a widespread worm are exploiting Windows escalation opportunities faster than organizations can patch them.
Researchers suspect the criminals behind the Raspberry Robin malware are now buying exploits for speedier cyberattacks. An exploit developer is thought by…
We take a deep dive into Roshtyak, the DLL backdoor payload associated with Raspberry Robin. Roshtyak is full of anti-analysis tricks. Some are well-known, and some we have never seen before. From a technical perspective, the lengths Roshtyak takes to protect itself are extremely interesting. Roshtyak belongs to one of the best-protected malware strains we have ever seen. We hope by publishing our research and analysis of the malware and its protection tricks we will help fellow researchers recognize and respond to similar tricks, and harden their analysis environments, making them more resist...