GreenFlash Sundown

Sundown-GF - Status: Active

References:
  • New Bizarro Sundown Exploit Kit Spreads Locky - 2016-11-04 - Trend Micro - Joseph C. Chen - Brooks Li Bizarro Sundown GreenFlash Sundown Locky WordsJS CVE-2016-4117 CVE-2015-7645
  • More Reading:

  • CVE-2018-4878 (Flash Player up to 28.0.0.137) and Exploit Kits - 2018-03-09 - MDNC - Kafeine CVE-2018-4878 WordsJS GreenFlash Sundown Magnitude RIG Fallout Hermes
  • CVE-2018-8174 (VBScript Engine) and Exploit Kits - 2018-05-25 - MDNC - Kafeine CVE-2018-8174 RIG Magnitude GrandSoft Fallout Kaixin Hunter GreenFlash Sundown Smokebot
  • CVE-2018-15982 (Flash Player up to 31.0.0.153) and Exploit Kits - 2019-01-16 - MDNC - Kafeine CVE-2018-15982 Fallout Underminer Spelevo GreenFlash Sundown
  • 19.03.26 #Malvertising -> #GreenFlashSundown EK-> #SeonRansomware ver 0.2 & #pony & #miner using CVE-2018-15982 - 2019-04-05 - Twitter - Anti-malware vigilante CVE-2018-15982 GreenFlash Sundown Seon
  • GreenFlash Sundown exploit kit expands via large malvertising campaign - 2019-06-26 - Malwarebytes - Jérôme Segura GreenFlash Sundown Seon WordsJS
  • Shadowgate Returns to Worldwide Operations With Evolved Greenflash Sundown Exploit Kit - 2019-06-27 - Trendmicro - Joseph C. Chen GreenFlash Sundown WordsJS CVE-2018-15982