Today, PolySwarm, a threat intelligence platform used to detect new and emerging malware, releases information about a new variant of ZeroCleare (a destructive malware attributed to Iran). PolySwarm Community (free) and Enterprise users were able access to the full content of this sample before it appeared on VirusTotal.
Latest samples of ZeroCleare, Iranian state-sponsored malware, available on PolySwarm
Jan 9, 2020 2:09:01 PM / by PolySwarm Tech Team posted in Insider, Explained, PolySwarm, Threat Hunting, Research
Emotet's Christmas-themed phishing email ramps up - get hashes and file details in PolySwarm
Dec 18, 2019 2:04:51 PM / by PolySwarm Team posted in Research
Cybercriminals behind Emotet, one of the most prolific botnets in recent history, have ramped up a new Christmas-themed phishing attack. It lures victims to download malicious attachments related to "menus" for an upcoming Christmas party.
[Updated November 27, 2019]:
Emotet is a banking Trojan that was first identified by security researchers in 2014. Emotet was first designed as a banking malware that attempted to sneak onto computers and steal sensitive and private information. It has evolved over the last several years from a basic threat, and morphed into a customizable modular package and has been seen deploying additional payloads against financial institutions, enterprises, and consumers across the globe.
Ginp banking Trojan actively targeting banks: here's what you need to know, plus free malware samples
Nov 22, 2019 12:11:52 PM / by PolySwarm Tech Team posted in Explained, PolySwarm, Research
Ginp is a banking Trojan that is actively being used to impersonate targeted banking apps. The malware brings up a screen on the victims phone and displays a window that mimics the real banking app. First, one is prompted to login with their credentials. The second screen steals the victim's credit card details.
Cybersecurity leader joins PolySwarm's executive team as CRO
Nov 18, 2019 10:03:49 AM / by PolySwarm Team posted in Press, PolySwarm, Leadership
FOR IMMEDIATE RELEASE
PolySwarm now integrated with Demisto’s SOAR platform
Nov 7, 2019 12:08:22 PM / by PolySwarm Team
PolySwarm now integrates with Splunk Phantom
Nov 5, 2019 1:31:37 PM / by PolySwarm Team posted in PolySwarm, Product, Partner
Video: PolySwarm walkthrough - malware scanning and searching in PolySwarm UI
Nov 4, 2019 5:48:39 PM / by PolySwarm Team posted in Media, PolySwarm, Product