• Tools
  • ATOMs
  • About Us

Posts tagged with: OilRig

A conceptual illustration showing a world map along with icons representing malware and other tools used by malicious actors
29,200
people reacted

OilRig Targets Middle Eastern Telecommunications Organization and Adds Novel C2 Channel with Steganography to Its Inventory

  • By Robert Falcone
  • July 22, 2020 at 6:00 AM

16

18 min. read

29,621
people reacted

Threat Brief: Iranian-Linked Cyber Operations

  • By Unit 42
  • January 9, 2020 at 6:00 PM

36

6 min. read

Trending

  • Threat Assessment: Active Exploitation of Four Zero-Day Vulnerabilities in Microsoft Exchange Server
  • Ransomware Threat Assessments: A Companion to the 2021 Unit 42 Ransomware Threat Report
  • Satori: Mirai Botnet Variant Targeting Vantage Velocity Field Unit RCE Vulnerability
  • Winter 2020 Network Attack Trends: Internet of Threats
  • Highlights from the 2021 Unit 42 Ransomware Threat Report
59,960
people reacted

Behind the Scenes with OilRig

  • By Bryan Lee and Robert Falcone
  • April 30, 2019 at 6:00 AM

4

24 min. read

DNS Tunneling in the Wild: Overview of OilRig’s DNS Tunneling

  • By Robert Falcone
  • April 16, 2019 at 9:00 AM

6

37 min. read

21,897
people reacted

Analyzing OilRig's Ops Tempo from Testing to Weaponization to Delivery

  • By Robert Falcone and Kyle Wilhoit
  • November 16, 2018 at 8:00 AM

3

15 min. read

38,396
people reacted

OilRig Uses Updated BONDUPDATER to Target Middle Eastern Government

  • By Kyle Wilhoit and Robert Falcone
  • September 12, 2018 at 4:00 PM

2

9 min. read

25,473
people reacted

OilRig targets a Middle Eastern Government and Adds Evasion Techniques to OopsIE

  • By Robert Falcone, Bryan Lee and Riley Porter
  • September 4, 2018 at 1:00 PM

3

9 min. read

OilRig Targets Technology Service Provider and Government Agency with QUADAGENT

  • By Bryan Lee and Robert Falcone
  • July 25, 2018 at 5:00 AM

1

14 min. read

36,324
people reacted

OopsIE! OilRig Uses ThreeDollars to Deliver New Trojan

  • By Bryan Lee and Robert Falcone
  • February 23, 2018 at 5:00 AM

5

11 min. read

38,079
people reacted

OilRig uses RGDoor IIS Backdoor on Targets in the Middle East

  • By Robert Falcone
  • January 25, 2018 at 5:00 AM

1

8 min. read

43,303
people reacted

Introducing the Adversary Playbook: First up, OilRig

  • By Ryan Olson
  • December 15, 2017 at 1:00 PM

5

6 min. read

29,544
people reacted

OilRig Performs Tests on the TwoFace Webshell

  • By Robert Falcone
  • December 11, 2017 at 1:00 PM

1

16 min. read

34,505
people reacted

OilRig Deploys “ALMA Communicator” – DNS Tunneling Trojan

  • By Robert Falcone
  • November 8, 2017 at 1:00 PM

1

7 min. read

35,156
people reacted

OilRig Group Steps Up Attacks with New Delivery Documents and New Injector Trojan

  • By Robert Falcone and Bryan Lee
  • October 9, 2017 at 10:00 AM

4

12 min. read

28,148
people reacted

Striking Oil: A Closer Look at Adversary Infrastructure

  • By Robert Falcone and Bryan Lee
  • September 26, 2017 at 1:00 PM

1

8 min. read

Popular Resources

  • Resource Center
  • Blog
  • Communities
  • Tech Docs
  • Unit 42
  • Sitemap

Legal Notices

  • Privacy
  • Terms of Use
  • Documents

Account

  • Manage Subscriptions
  •  
  • Report a Vulnerability

© 2021 Palo Alto Networks, Inc. All rights reserved.