Remove 2013 Remove DNS Remove Security Defenses Remove Threat Reports
article thumbnail

APT trends report Q1 2021

SecureList

Our latest reports focus on the changes the threat actor made to the September and November versions of its backdoor. Although Lyceum still prefers taking advantage of DNS tunneling, it appears to have replaced the previously documented.NET payload with a new C++ backdoor and a PowerShell script that serve the same purpose.

Malware 143