 
					
- TLP-GREEN
IcedID (also known as Bokbot) is an information stealer/backdoor malware that can lead to other activity like Cobalt Strike and Virtual Network Computing (VNC) traffic.
IcedID is often distributed through email, and analysts had also seen it delivered by fake software sites from Google ad traffic.
SkyWatchSM Alert Legend
- Warning
- Active Threat
- Malware
- Ransomware
- Phishing
- Network/IOT
Glesec Information Sharing Protocol
GLESEC CYBER SECURITY INCIDENT REPORTS are in compliance with the U.S. Department of Homeland Security (DHS) Traffic-Light Protocol (TLP).
- TLP-White- Disclosure is Not Limited. 
- TLP-Green- Limited Disclosure, Restricted Only to the Community. 
- TLP-Amber- Limited Disclosure, restricted to the Participant's Organization. 
- TLP-Red- Not for Disclosure, Restricted/ Classified - Only Shared with US DHS. 
Discover Glesec.
Authority. Consistency.
Sign-up today for SkywatchSM Alerts.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
 
				
 
			 
			 
			 
			 
			 
			