🚨 New Microsoft zero-day tied to #MSNightmare: LegacyHive 🚨
Howler Cell reproduced the technique on Windows 11 and in a controlled environment. #LegacyHive is the ninth tool released by this researcher.
Read more by @reegun21 & @BaskarGreen:
Our mission is simple: stop threats and help organizations #BeEverydayReady. We share the latest analysis, threat research, and findings from #HowlerCell.
Joined October 2011
- What looked like a Bangladesh Air Force officer bio was actually a multi-stage implant. Howler Cell tracks an active DoNot intrusion targeting Bangladesh’s military. Read more by @reegun21, @BaskarGreen, & Rahul R: bit.ly/4fiWvAk #HowlerCell
- Howler Cell uncovered an active campaign targeting users through fake Indian Income Tax Department websites. Victims are shown tax notices and tricked into downloading a ZIP file that launches a six-stage infection chain ending in two RAT implants. 🔗 bit.ly/3SEmzyq
- New from #HowlerCell. See how one of our researchers spent 11 days inside a hardened Active Directory and gained Domain Admin access without novel exploits. The attack chain exposed a blind spot in Zero Trust: certificate authority governance. 🔗bit.ly/44trvsi
- New #HowlerCell Threat Research Hours after @Microsoft shipped June Patch Tuesday fixes, the researcher known as Nightmare-Eclipse resurfaced on GitHub as #MSNightmare, publishing #RougePlanet, the 7th exploit targeting Defender in the cluster.

