CyberWire Daily cover image

Has GOLD SOUTHFIELD resumed operations? [Research Saturday]

CyberWire Daily

00:00

What's the Backstory of the Gold Saltfield Threat Group?

The most recent ransom ware samples have been released. They were created by the gold saltfield threat group, which is using reval as a service offering. The new features include an inclusion of a new command line argument called dash t. It expected to receive some type of e token value that it then used for decoting strings at one time. And these strings were critical to the success of its execution.

Play episode from 04:48
Transcript

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app