Why Nostr? What is Njump?
2025-04-12 06:26:41

mcmastersteve on Nostr: A group believed to be a subset of APT10, abuses WSB (Windows Sandbox) by creating a ...

A group believed to be a subset of APT10, abuses WSB (Windows Sandbox) by creating a .wsb configuration file and using it to spin up an instance of the Windows Sandbox.

This is interesting because Windows Defender cannot access the Windows Sandbox.

The payload enables folder sharing, network access, clipboard access, microphone access, and video access.

Author Public Key
npub1xk39kn4uv0vd9zczlrmht6ncxgd4l59xjk7r62nsw9qyy8nvlw3qz87wz9