The RCTS CERT team recently increased its malware analysis capacity. The reinforcement of the team and expansion of the toolset used in the analysis process now allows for a faster and more complete response to the number of analysis requests, which has grown over the past few months.
In this context, and because sharing information is an important factor in combating this phenomenon, some analysed cases with interesting outlines are (as of 15 January) being shared by the RCTS CERT team on the MISP(Malware Information Sharing Platform) of FIRST(Forum of Incident Response and Security Teams).
The MISP platform allows FIRST members to efficiently share technical and nontechnical information about malware samples, attackers, and incidents. It also allows members who have not yet gained experience in threat analysis to take advantage of a broad community comprised of organizations that already have that experience, thereby increasing overall malware countermeasure resources.
FIRST is the "Forum of Incident Response and Security Teams", currently composed of 450 teams spread around the world, which the RCTS CERT team is part of, since April 2011.