Attackers Exploiting Public Cobalt Strike Profiles
Essential information
- Published
- 26/06/2024 17:26
- Modified
- 26/06/2024 17:57
- Tags
- 2024-06-26 cobalt strike evasion malicious profiles samples
- Related entities
- 1 vulnerabilities (cve), 6 observables, 17 techniques (mitre), 1 malware
Description
This report discusses recent findings of malicious Cobalt Strike infrastructure and malicious Cobalt Strike samples that leverage publicly available Malleable C2 profiles for evasion. Despite its defensive cybersecurity use, threat actors continue exploiting Cobalt Strike's malleable and evasive nature, posing a significant threat. Palo Alto Networks solutions can help identify and mitigate Cobalt Strike activity across various platforms. The analysis also emphasizes the adaptability of attackers in modifying public profiles to evade detection, highlighting the arms race against evolving threats.