Logo
Unit42 Logo
  • Tools
  • ATOMs
  • Security Consulting
  • About Us
  • Under Attack?

Posts tagged with: OilRig

OilRig Targets Middle Eastern Telecommunications Organization and Adds Novel C2 Channel with Steganography to Its InventoryA conceptual illustration showing a world map along with icons representing malware and other tools used by malicious actors
58,441
people reacted

OilRig Targets Middle Eastern Telecommunications Organization and Adds Novel C2 Channel with Steganography to Its Inventory

  • By Robert Falcone
  • July 22, 2020 at 6:00 AM

28

18 min. read

Threat Brief: Iranian-Linked Cyber Operations
38,585
people reacted

Threat Brief: Iranian-Linked Cyber Operations

  • By Unit 42
  • January 9, 2020 at 6:00 PM

44

6 min. read

Trending

  • Answers to Unit 42 Wireshark Quiz, January 2023 by Brad Duncan
  • Realtek SDK Vulnerability Attacks Highlight IoT Supply Chain Threats by Zhibin Zhang
  • Unit 42 Wireshark Quiz, January 2023 by Brad Duncan
  • Chinese PlugX Malware Hidden in Your USB Devices? by Mike Harbison
Behind the Scenes with OilRig
75,610
people reacted

Behind the Scenes with OilRig

  • By Bryan Lee and Robert Falcone
  • April 30, 2019 at 6:00 AM

4

24 min. read

DNS Tunneling in the Wild: Overview of OilRig’s DNS Tunneling

  • By Robert Falcone
  • April 16, 2019 at 9:00 AM

9

37 min. read

36,054
people reacted

Analyzing OilRig's Ops Tempo from Testing to Weaponization to Delivery

  • By Robert Falcone and Kyle Wilhoit
  • November 16, 2018 at 8:00 AM

6

15 min. read

57,295
people reacted

OilRig Uses Updated BONDUPDATER to Target Middle Eastern Government

  • By Kyle Wilhoit and Robert Falcone
  • September 12, 2018 at 4:00 PM

8

9 min. read

51,080
people reacted

OilRig targets a Middle Eastern Government and Adds Evasion Techniques to OopsIE

  • By Robert Falcone, Bryan Lee and Riley Porter
  • September 4, 2018 at 1:00 PM

7

9 min. read

OilRig Targets Technology Service Provider and Government Agency with QUADAGENT

  • By Bryan Lee and Robert Falcone
  • July 25, 2018 at 5:00 AM

1

14 min. read

56,004
people reacted

OopsIE! OilRig Uses ThreeDollars to Deliver New Trojan

  • By Bryan Lee and Robert Falcone
  • February 23, 2018 at 5:00 AM

9

11 min. read

69,244
people reacted

OilRig uses RGDoor IIS Backdoor on Targets in the Middle East

  • By Robert Falcone
  • January 25, 2018 at 5:00 AM

2

8 min. read

60,436
people reacted

Introducing the Adversary Playbook: First up, OilRig

  • By Ryan Olson
  • December 15, 2017 at 1:00 PM

9

6 min. read

42,790
people reacted

OilRig Performs Tests on the TwoFace Webshell

  • By Robert Falcone
  • December 11, 2017 at 1:00 PM

1

16 min. read

47,959
people reacted

OilRig Deploys “ALMA Communicator” – DNS Tunneling Trojan

  • By Robert Falcone
  • November 8, 2017 at 1:00 PM

5

7 min. read

52,015
people reacted

OilRig Group Steps Up Attacks with New Delivery Documents and New Injector Trojan

  • By Robert Falcone and Bryan Lee
  • October 9, 2017 at 10:00 AM

10

12 min. read

40,678
people reacted

Striking Oil: A Closer Look at Adversary Infrastructure

  • By Robert Falcone and Bryan Lee
  • September 26, 2017 at 1:00 PM

2

8 min. read

Popular Resources

  • Resource Center
  • Blog
  • Communities
  • Tech Docs
  • Unit 42
  • Sitemap

Legal Notices

  • Privacy
  • Terms of Use
  • Documents

Account

  • Manage Subscriptions
  •  
  • Report a Vulnerability

© 2023 Palo Alto Networks, Inc. All rights reserved.