Fortinet

FortinetSecurity

In-Depth Analysis of A New Variant of .NET Malware AgentTesla

Credit to Author: Xiaopeng Zhang| Date: Wed, 28 Jun 2017 16:15:52 +0000

FortiGuard Labs recently captured some malware which was developed with the Microsoft .Net framework. I analyzed one of them, and in this blog, I’m going to show you how it is able to steal information from a victim’s machine. The malware was spread via a Microsoft Word document that contained an auto-executable malicious VBA Macro. Figure 1 below shows how it looks when it’s opened. Figure 1. When the malicious Word document is opened What the VBA code does Once you click the “Enable Content”…

Read More
FortinetSecurity

Preventing Cloud Blindness

Credit to Author: John Maddison| Date: Thu, 29 Jun 2017 12:59:00 +0000

For many organizations, embracing the potential of the new digital economy involves migrating services, data, and infrastructure to the cloud. The cloud is a powerfully disruptive technology. It allows businesses to be more agile, responsive, and available than ever before by transforming traditional compute architectures and best practices that have been in place for decades. Most organizations today have some sort of a cloud strategy. Nearly all of them are adopting a hybrid cloud infrastructure that combines their private cloud with one or…

Read More
FortinetSecurity

A Technical Analysis of the Petya Ransomworm

Credit to Author: Margarette Joven| Date: Wed, 28 Jun 2017 12:05:00 +0000

Yesterday, a new ransomware wreaked havoc across the world. This new malware variant, which combines the functionality of ransomware with the behaviors of a worm, is being called Petya, Petrwrap, and even NotPetya, since researchers are still investigating as to whether its ability to modify the Master Boot Record of a targeted machine is based on the Petya family of malware. Fortinet has designated this new hybrid form of malware as a ransomworm, and this outbreak was reported to use the same worm mechanism to spread across the Internet as WannaCry,…

Read More
FortinetSecurity

In-Depth Analysis of .NET Malware JavaUpdtr

Credit to Author: Xiaopeng Zhang| Date: Wed, 28 Jun 2017 16:15:52 +0000

FortiGuard Labs recently captured some malware which was developed with the Microsoft .Net framework. I analyzed one of them, and in this blog, I’m going to show you how it is able to steal information from a victim’s machine. The malware was spread via a Microsoft Word document that contained an auto-executable malicious VBA Macro. Figure 1 below shows how it looks when it’s opened. Figure 1. When the malicious Word document is opened What the VBA code does Once you click the “Enable Content”…

Read More
FortinetSecurity

Fortinet UTM: A Gartner’s Magic Quadrant Leader 8 Times in a Row

Credit to Author: John Maddison| Date: Wed, 28 Jun 2017 12:55:00 +0000

Fortinet’s UTM solutions have been positioned in the leader’s quadrant of Gartner’s annual Magic Quadrant for Unified Threat Management report for the 8th year in a row. In this year’s report, Gartner recognized the ‘completeness’ of our solution, which includes the Security Fabric vision, and we also achieved the highest placement for our ability to execute on that vision. Unified Threat Management, or UTM, solutions consolidate security and networking functions into a single device to simplify business infrastructures…

Read More
FortinetSecurity

New Ransomworm Follows WannaCry Exploits

Credit to Author: Aamir Lakhani| Date: Tue, 27 Jun 2017 17:00:00 +0000

We are currently tracking a new ransomware variant sweeping across the globe known as Petya. It is currently having an impact on a wide range of industries and organizations, including critical infrastructure such as energy, banking, and transportation systems. This is a new generation of ransomware designed to take advantage of timely exploits. This current version is targeting the same vulnerabilities that we exploited during the recent Wannacry attack this past May. This latest attack, known as Petya, is something we are referring to as…

Read More
FortinetSecurity

New Ransomware Follows WannaCry Exploits

Credit to Author: Aamir Lakhani| Date: Tue, 27 Jun 2017 17:00:00 +0000

We are currently tracking a new ransomware variant sweeping across the globe known as Petya. It is currently having an impact on a wide range of industries and organizations, including critical infrastructure such as energy, banking, and transportation systems. This is a new generation of ransomware designed to take advantage of timely exploits. This current version is targeting the same vulnerabilities that we exploited during the recent Wannacry attack this past May. This latest attack, known as Petya, is something we are referring to as…

Read More
FortinetSecurity

The Need for Situational Awareness

Credit to Author: Anthony Giandomenico| Date: Tue, 27 Jun 2017 12:59:00 +0000

As human beings, we are continually looking for knowledge or information to help improve any situation. If we live or work in a crowded city, for example, we want to know which routes are best to avoid getting stuck in traffic. When we enter a restaurant or movie theater we look for the exits. And when suspicious looking person enters the room, part of our mind automatically keeps track of him. This behavior is known as situational awareness, and it’s second nature to most of us. But while such behavior often occurs in our everyday…

Read More