<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>POS - malgregator</title>
    <link>https://malgregator.com/tags/pos/</link>
    <description>Recent content in POS on malgregator</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>you@example.com</managingEditor>
    <webMaster>you@example.com</webMaster>
    <lastBuildDate>Fri, 11 May 2018 08:01:00 +0000</lastBuildDate>
    
        <atom:link href="https://malgregator.com/tags/pos/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>InfoSec Week 19, 2018</title>
      <link>https://malgregator.com/post/week-19-2018/</link>
      <pubDate>Fri, 11 May 2018 08:01:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-19-2018/</guid>
      <description>There is a first ransomware which is taking advantage of a new Process Doppelgänging fileless code injection technique. Working on all modern versions of Microsoft Windows, since Vista. This variant of a known SynAck ransomware is using NTFS transactions to launch a malicious process by replacing the memory of a legitimate process.</description>
    </item><item>
      <title>InfoSec Week 7, 2018</title>
      <link>https://malgregator.com/post/week-07-2018/</link>
      <pubDate>Thu, 15 Feb 2018 22:45:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-07-2018/</guid>
      <description>The Fidelis Cybersecurity researcher Jason Reaves demonstrated how covertly exchange data using X.509 digital certificates. The proof of concept code is using SubjectKeyIdentifier and generating certificates on the fly.</description>
    </item><item>
      <title>InfoSec Week 11, 2017</title>
      <link>https://malgregator.com/post/week-11-2017/</link>
      <pubDate>Sun, 19 Mar 2017 21:20:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-11-2017/</guid>
      <description>MalwareMustDie analyzed new APT Campaign with the Poison Ivy RAT payload. Malware is using obfuscated VBScript, Power Shell to finally drop well known RAT.   &#39;The concept of infection is fileless, it&#39;s avoiding known signature for detection by multiple encodings and wraps, and it is also 100% avoiding the original attacker&#39;s working territory.&#39;</description>
    </item>
  </channel>
</rss>