Click here to download all references as Bib-File.•
| 2025-10-20
⋅
Darktrace
⋅
Salty Much: Darktrace’s view on a recent Salt Typhoon intrusion SNAPPYBEE |
| 2025-09-05
⋅
Arctic Wolf
⋅
GPUGate Malware: Malicious GitHub Desktop Implants Use Hardware-Specific Decryption, Abuse Google Ads to Target Western Europe |
| 2025-06-18
⋅
Huntress Labs
⋅
Feeling Blue(Noroff): Inside a Sophisticated DPRK Web3 Intrusion |
| 2025-06-17
⋅
Palo Alto Networks Unit 42
⋅
Exploring a New KimJongRAT Stealer Variant and Its PowerShell Implementation KimJongRat |
| 2025-06-04
⋅
Threatray
⋅
The Bitter End: Unraveling Eight Years of Espionage Antics – Part Two AlmondRAT AlmondRAT Artra Downloader BDarkRAT Havoc KiwiStealer KugelBlitz MiyaRAT ORPCBackdoor WmRAT ZxxZ |
| 2025-06-04
⋅
Proofpoint
⋅
The Bitter End: Unraveling Eight Years of Espionage Antics—Part One Artra Downloader Havoc |
| 2025-01-20
⋅
Medium walmartglobaltech
⋅
Qbot is Back.Connect ReedBed UNC4393 |
| 2024-07-18
⋅
Mandiant
⋅
APT41 Has Arisen From the DUST Cobalt Strike |
| 2024-05-01
⋅
Mandiant
⋅
Uncharmed: Untangling Iran's APT42 Operations TAMECAT |
| 2024-02-29
⋅
ANALYST1
⋅
LockBit Takedown & Operation Cronos: A Long-Awaited PsyOps Against Ransomware LockBit LockBit LockBit |
| 2024-02-27
⋅
Mandiant
⋅
When Cats Fly: Suspected Iranian Threat Actor UNC1549 Targets Israeli and Middle East Aerospace and Defense Sectors LIGHTRAIL MINIBIKE MINIBUS UNC1549 |
| 2024-02-08
⋅
ANALYST1
⋅
“This Forum is a Bunch of Communists and They Set Me Up”, LockBit Spills the Tea Regarding Their Recent Ban on Russian-Speaking Forums LockBit |
| 2024-01-16
⋅
Medium walmartglobaltech
⋅
Keyhole Analysis IcedID Keyhole |
| 2023-12-04
⋅
The Record
⋅
Florida water agency latest to confirm cyber incident as feds warn of nation-state attacks |
| 2023-11-16
⋅
The Register
⋅
BlackCat plays with malvertising traps to lure corporate victims BlackCat |
| 2023-11-01
⋅
AppGate
⋅
Vietnamese Information Stealer Campaigns Target Professionals on LinkedIn DUCKTAIL |
| 2023-10-26
⋅
Medium walmartglobaltech
⋅
SmartApeSG NetSupportManager RAT |
| 2023-10-15
⋅
The Record
⋅
Colonial Pipeline attributes ransomware claims to ‘unrelated’ third-party data breach RansomVC |
| 2023-10-03
⋅
The Record
⋅
NATO 'actively addressing' alleged cyberattack affecting some websites SiegedSec |
| 2023-09-28
⋅
Cisco Talos
⋅
The security pitfalls of social media sites offering ID-based authentication RansomVC |