
It's Summertime: What’s the E-crime Vibe?
DISCARDED: Tales From the Threat Research Trenches
00:00
The Differences Between TA 570 and 577
TF 577 is a lot more evasive than TA 570. They have so many consistent things from campaign to campaign yet they still switch up like the URL structure in their payloads or document naming conventions. So it's really impressive. Other than their adaptability what else do you enjoy about tracking them? Honestly they're a pain in the butt especially. It just makes me want to see all the small changes and understand why they make the changesWhy they switch things up throughout the day. I find almost comforting because there's going to be smaller changes but so much consistency it still keeps it fun without you know driving and saying.
Transcript
Play full episode