recvfrom / contributor

Proof-of-Concept for a program to help people contribute to Snort/ClamAV
https://recvfrom.github.io/contributor/
0 stars 0 forks source link

PonyStealer Exfil Attempts #7

Open recvfrom opened 3 years ago

recvfrom commented 3 years ago

Overview Write Snort rules for traffic related to PonyStealer (commodity infostealer malware) exfiltrating collecting data

Proposal Write Snort rules for PonyStealer exfil traffic. For more info, see:

Expected Difficulty

Technical Info ponystealer-pcap.zip (password: infected)