エピソード

  • Xanthorox OPSEC Fail - A Case Study
    2025/06/02
    It all started with a malicious-purposed tool listing buried deep in a forum thread.

    From there, a simple name — Xanthorox — led our Labs at Zynap down a rabbit hole of exposed servers, broken operational security, rebranding attempts, and a history involving black-market AI tools. What began as an infrastructure investigation quickly turned into a case study of how ego, poor hygiene, and digital footprints bring even the most active developers to light...
    続きを読む 一部表示
    14 分
  • Infrastructure of a Heist - How Credential Theft Operates at Scale
    2025/06/02
    This analysis outlines the financial and infrastructural requirements for launching a credential theft campaign, highlighting that it's a complex endeavor beyond simple phishing. Zynap analyzes the key costs include renting infostealer malware, obtaining malware hosting services, securing delivery mechanisms like phishing kits, and utilizing evasion services such as crypters to avoid detection. The study also explores the use of social media platforms like YouTube for malware distribution, noting associated costs for accounts and promotional services. Furthermore, the text examines the structure and potential earnings within organized cybercriminal groups known as "traffers teams", indicating that while operational costs exist, potential profits can vary significantly. Overall, the research provides an estimate of the minimum financial investment needed to initiate this type of cybercrime.
    続きを読む 一部表示
    18 分
  • Anatomy of Exposure - Mapping Victims in a Credential Theft Epidemic
    2025/06/02
    Based on an analysis made by Zynap Labs, of a large sample of compromised credentials, a cybersecurity firm highlights key trends in information theft. Gaming platforms, particularly Roblox, and social media sites like Facebook are major targets for credential theft, with a surprising number of compromised accounts originating from governmental websites in certain regions. Furthermore, Gmail accounts represent the vast majority of compromised email credentials. The report also notes a high correlation between compromised IPs and populous countries, and confirms that PCs are overwhelmingly the most common device type affected by infostealers.
    続きを読む 一部表示
    16 分