Click here to download all references as Bib-File.
2022-10-24 ⋅ Medium CSIS Techblog ⋅ Chapter 1 — From Gozi to ISFB: The history of a mythical malware family. Gozi ISFB Snifula |
2022-08-08 ⋅ Medium CSIS Techblog ⋅ An inside view of domain anonymization as-a-service — the BraZZZerSFF infrastructure Riltok magecart Anubis Azorult BetaBot Buer CoalaBot CryptBot DiamondFox DreamBot GCleaner ISFB Loki Password Stealer (PWS) MedusaLocker MeguminTrojan Nemty PsiX RedLine Stealer SmokeLoader STOP TinyNuke Vidar Zloader |
2021-04-23 ⋅ CSIS ⋅ Supply chain attack on the password manager Clickstudios - PASSWORDSTATE Moserpass |
2021-03-16 ⋅ Medium CSIS Techblog ⋅ The Brief Glory of Cabassous/FluBot — a private Android banking botnet FluBot |
2021-01-25 ⋅ Medium CSIS Techblog ⋅ The Nemty affiliate model Nemty |
2021-01-21 ⋅ Medium CSIS Techblog ⋅ Silencing Microsoft Defender for Endpoint using firewall rules |
2021-01-18 ⋅ Medium csis-techblog ⋅ GCleaner — Garbage Provider Since 2019 Amadey Ficker Stealer Raccoon RedLine Stealer SmokeLoader STOP |
2020-06-25 ⋅ Medium CSIS Techblog ⋅ The RoamingMantis Group’s Expansion to European Apple Accounts and Android Devices FakeSpy FunkyBot MoqHao |
2020-05-01 ⋅ CSIS ⋅ The end of Dreambot? Obituary for a loved piece of Gozi. DreamBot |
2020-02-07 ⋅ Medium CSIS Techblog ⋅ InstallCapital — When AdWare Becomes Pay-per-Install Cyber-Crime DreamBot Glupteba |
2020-01-10 ⋅ CSIS ⋅ Threat Matrix H1 2019 Gustuff magecart Emotet Gandcrab Ramnit TrickBot |
2019-09-03 ⋅ Medium CSIS Techblog ⋅ Analysis of Joker — A Spy & Premium Subscription Bot on GooglePlay Joker |
2019 ⋅ CSIS ⋅ Dreambot Business overview 2019 ISFB |
2012 ⋅ CSIS Trend Micro ⋅ W32.Tinba (Tinybanker) The Turkish Incident Tinba |