【Yara Rule】
◆ Russian APT Ecosystem (ITAYC0HEN)
https://github.com/ITAYC0HEN/APT-Ecosystem
【使用方法】
Russian APT Detector
---------------------
usage: Detector.exe [-h] -t TARGET [TARGET ...] [-r]
Detector.exe: error: argument -t/--target is required
【ブログ】
◆Mapping the Connections Inside Russia's APT Ecosystem (Intezer, 2019/09/24 08:20)
https://www.intezer.com/blog-russian-apt-ecosystem/
⇒ https://malware-log.hatenablog.com/entry/2019/09/24/000000_4