Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2023-04-24CofenseAustin Jones
@online{jones:20230424:opensource:a0f5347, author = {Austin Jones}, title = {{Open-Source Gh0st RAT Still Haunting Inboxes 15 Years After Release}}, date = {2023-04-24}, organization = {Cofense}, url = {https://cofense.com/blog/open-source-gh0st-rat-still-haunting-inboxes-15-years-after-release/}, language = {English}, urldate = {2023-04-26} } Open-Source Gh0st RAT Still Haunting Inboxes 15 Years After Release
Ghost RAT
2023-03-07CofenseCofense
@online{cofense:20230307:emotet:daf5b46, author = {Cofense}, title = {{Emotet Sending Malicious Emails After Three-Month Hiatus}}, date = {2023-03-07}, organization = {Cofense}, url = {https://cofense.com/blog/emotet-sending-malicious-emails-after-three-month-hiatus/}, language = {English}, urldate = {2023-03-13} } Emotet Sending Malicious Emails After Three-Month Hiatus
Emotet
2022-09-09CofenseAndy Mann, Dylan Main
@online{mann:20220909:lampion:daaabc4, author = {Andy Mann and Dylan Main}, title = {{Lampion Trojan Utilizes New Delivery through Cloud-Based Sharing}}, date = {2022-09-09}, organization = {Cofense}, url = {https://cofense.com/blog/lampion-trojan-utilizes-new-delivery-through-cloud-based-sharing}, language = {English}, urldate = {2022-09-13} } Lampion Trojan Utilizes New Delivery through Cloud-Based Sharing
lampion
2022-02-17CofenseJake Longden
@online{longden:20220217:phishers:859fd2b, author = {Jake Longden}, title = {{Phishers Spoof Power BI to Visualize Your Credential Data}}, date = {2022-02-17}, organization = {Cofense}, url = {https://cofense.com/blog/phishers-spoof-power-bi-to-visualize-your-credential-data}, language = {English}, urldate = {2022-02-19} } Phishers Spoof Power BI to Visualize Your Credential Data
2021-10-21CofenseCofense
@online{cofense:20211021:missed:0f171ba, author = {Cofense}, title = {{“Missed Voice Message,” the Latest Phishing Lure}}, date = {2021-10-21}, organization = {Cofense}, url = {https://cofense.com/blog/missed-voice-message-phish/}, language = {English}, urldate = {2021-10-26} } “Missed Voice Message,” the Latest Phishing Lure
2021-03-11CofenseElmer Hernandez
@online{hernandez:20210311:autohotkey:27bb61f, author = {Elmer Hernandez}, title = {{AutoHotKey Leveraged by Metamorfo/Mekotio Banking Trojan}}, date = {2021-03-11}, organization = {Cofense}, url = {https://cofense.com/blog/autohotkey-banking-trojan/}, language = {English}, urldate = {2021-03-12} } AutoHotKey Leveraged by Metamorfo/Mekotio Banking Trojan
Metamorfo
2021-02-09CofenseZachary Bailey
@online{bailey:20210209:bazarbackdoors:a9cf426, author = {Zachary Bailey}, title = {{BazarBackdoor’s Stealthy Infiltration Evades Multiple SEGs}}, date = {2021-02-09}, organization = {Cofense}, url = {https://cofense.com/blog/bazarbackdoor-stealthy-infiltration}, language = {English}, urldate = {2021-02-09} } BazarBackdoor’s Stealthy Infiltration Evades Multiple SEGs
BazarBackdoor
2020-12-15CofenseAaron Riley
@online{riley:20201215:strategic:653455d, author = {Aaron Riley}, title = {{Strategic Analysis: Agent Tesla Expands Targeting and Networking Capabilities}}, date = {2020-12-15}, organization = {Cofense}, url = {https://cofense.com/strategic-analysis-agent-tesla-expands-targeting-and-networking-capabilities/}, language = {English}, urldate = {2020-12-17} } Strategic Analysis: Agent Tesla Expands Targeting and Networking Capabilities
Agent Tesla
2020-11-19CofenseKyle Duncan
@online{duncan:20201119:threat:67ef9bd, author = {Kyle Duncan}, title = {{Threat Actor Utilizes COVID-19 Uncertainty to Target Users}}, date = {2020-11-19}, organization = {Cofense}, url = {https://cofense.com/threat-actor-utilizes-covid-19-uncertainty-to-target-users/}, language = {English}, urldate = {2020-11-23} } Threat Actor Utilizes COVID-19 Uncertainty to Target Users
2020-10-30CofenseThe Cofense Intelligence Team
@online{team:20201030:ryuk:9166a9a, author = {The Cofense Intelligence Team}, title = {{The Ryuk Threat: Why BazarBackdoor Matters Most}}, date = {2020-10-30}, organization = {Cofense}, url = {https://cofense.com/the-ryuk-threat-why-bazarbackdoor-matters-most/}, language = {English}, urldate = {2020-11-02} } The Ryuk Threat: Why BazarBackdoor Matters Most
BazarBackdoor Ryuk
2020-10-29CofenseCofense
@online{cofense:20201029:online:867b653, author = {Cofense}, title = {{Online Leader Invites You to This Webex Phish}}, date = {2020-10-29}, organization = {Cofense}, url = {https://cofense.com/online-leader-invites-you-to-this-webex-phish/}, language = {English}, urldate = {2020-11-02} } Online Leader Invites You to This Webex Phish
2020-10-27CofenseAdam Martin, Nathaniel Sagibanda, Kian Buckley Maher, Cofense Phishing Defense Center
@online{martin:20201027:purchase:efee82d, author = {Adam Martin and Nathaniel Sagibanda and Kian Buckley Maher and Cofense Phishing Defense Center}, title = {{Purchase Order Phishing, the Everlasting Phishing Tactic}}, date = {2020-10-27}, organization = {Cofense}, url = {https://cofense.com/purchase-order-phishing-the-everlasting-phishing-tactic/}, language = {English}, urldate = {2020-11-02} } Purchase Order Phishing, the Everlasting Phishing Tactic
2020-07-13CofenseCharlie
@online{charlie:20200713:fell:f278f19, author = {Charlie}, title = {{Fell Deeds Awake}}, date = {2020-07-13}, organization = {Cofense}, url = {https://cofenselabs.com/fell-deeds-awake/}, language = {English}, urldate = {2020-07-15} } Fell Deeds Awake
2020-06-11CofenseJason Meurer
@online{meurer:20200611:all:cc2e167, author = {Jason Meurer}, title = {{All You Need Is Text: Second Wave}}, date = {2020-06-11}, organization = {Cofense}, url = {https://cofenselabs.com/all-you-need-is-text-second-wave/}, language = {English}, urldate = {2020-06-12} } All You Need Is Text: Second Wave
TrickBot
2020-05-29CofenseElmer Hernandez
@online{hernandez:20200529:phishers:2759c33, author = {Elmer Hernandez}, title = {{Phishers Cast a Wider Net in the African Banking Sector}}, date = {2020-05-29}, organization = {Cofense}, url = {https://cofense.com/phishers-cast-wider-net-african-banking-sector/}, language = {English}, urldate = {2020-06-02} } Phishers Cast a Wider Net in the African Banking Sector
2019-06-14CofenseNick Guarino, Aaron Riley
@online{guarino:20190614:houdini:d6c63fa, author = {Nick Guarino and Aaron Riley}, title = {{Houdini Worm Transformed in New Phishing Attack}}, date = {2019-06-14}, organization = {Cofense}, url = {https://cofense.com/houdini-worm-transformed-new-phishing-attack/}, language = {English}, urldate = {2020-01-08} } Houdini Worm Transformed in New Phishing Attack
Houdini
2019-03-15CofenseThreat Intelligence
@online{intelligence:20190315:flash:c7544fd, author = {Threat Intelligence}, title = {{Flash Bulletin: Emotet Epoch 1 Changes its C2 Communication}}, date = {2019-03-15}, organization = {Cofense}, url = {https://cofense.com/flash-bulletin-emotet-epoch-1-changes-c2-communication/}, language = {English}, urldate = {2019-10-23} } Flash Bulletin: Emotet Epoch 1 Changes its C2 Communication
Emotet
2019-01-21CofenseCofense
@online{cofense:20190121:kutaki:3bff835, author = {Cofense}, title = {{The Kutaki Malware Bypasses Gateways to Steal Users’ Credentials}}, date = {2019-01-21}, organization = {Cofense}, url = {https://cofense.com/kutaki-malware-bypasses-gateways-steal-users-credentials/}, language = {English}, urldate = {2020-01-06} } The Kutaki Malware Bypasses Gateways to Steal Users’ Credentials
Kutaki
2018-08-15CofenseJason Meurer, Darrel Rendell
@online{meurer:20180815:necurs:cfffc46, author = {Jason Meurer and Darrel Rendell}, title = {{Necurs Targeting Banks with PUB File that Drops FlawedAmmyy}}, date = {2018-08-15}, organization = {Cofense}, url = {https://cofense.com/necurs-targeting-banks-pub-file-drops-flawedammyy/}, language = {English}, urldate = {2020-01-08} } Necurs Targeting Banks with PUB File that Drops FlawedAmmyy
Necurs
2017-03-23CofenseCofense
@online{cofense:20170323:tales:cbdee9a, author = {Cofense}, title = {{Tales from the Trenches: Loki Bot Malware}}, date = {2017-03-23}, organization = {Cofense}, url = {https://phishme.com/loki-bot-malware/}, language = {English}, urldate = {2019-12-02} } Tales from the Trenches: Loki Bot Malware
Loki Password Stealer (PWS)