Click here to download all references as Bib-File.•
2024-10-15
⋅
Trend Micro
⋅
Silent Threat: Red Team Tool EDRSilencer Disrupting Endpoint Security Solutions EDRSilencer |
2024-09-26
⋅
The Wall Street Journal
⋅
China-Linked Hackers Breach U.S. Internet Providers in New ‘Salt Typhoon’ Cyberattack GhostEmperor |
2024-09-19
⋅
Mandiant
⋅
UNC1860 and the Temple of Oats: Iran’s Hidden Hand in Middle Eastern Networks OATBOAT |
2024-09-19
⋅
Mandiant
⋅
UNC1860 and the Temple of Oats: Iran’s Hidden Hand in Middle Eastern Networks CRYPTOSLAY PipeSnoop TEMPLEDOOR UNC1860 |
2023-05-26
⋅
Trend Micro
⋅
New Info Stealer Bandit Stealer Targets Browsers, Wallets Bandit Stealer |
2023-01-19
⋅
Mandiant
⋅
Suspected Chinese Threat Actors Exploiting FortiOS Vulnerability (CVE-2022-42475) BOLDMOVE BOLDMOVE |
2023-01-05
⋅
Mandiant
⋅
Turla: A Galaxy of Opportunity KopiLuwak Andromeda QUIETCANARY |
2022-11-29
⋅
Mandiant
⋅
Suspected Russian Activity Targeting Government and Business Entities Around the Globe CEELOADER |
2022-04-29
⋅
Mandiant
⋅
Trello From the Other Side: Tracking APT29 Phishing Campaigns BEATDROP VaporRage |
2022-04-28
⋅
Mandiant
⋅
Trello From the Other Side: Tracking APT29 Phishing Campaigns Cobalt Strike |
2021-12-06
⋅
Mandiant
⋅
Suspected Russian Activity Targeting Government and Business Entities Around the Globe (UNC2452) Cobalt Strike CryptBot |
2021-05-27
⋅
FireEye
⋅
Re-Checking Your Pulse: Updates on Chinese APT Actors Compromising Pulse Secure VPN Devices UNC2630 UNC2717 |
2021-04-20
⋅
FireEye
⋅
Check Your Pulse: Suspected APT Actors Leverage Authentication Bypass Techniques and Pulse Secure Zero-Day |
2020-12-13
⋅
FireEye
⋅
Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor SUNBURST SUPERNOVA TEARDROP UNC2452 |
2020-12-02
⋅
GoSecure
⋅
Deep Dive into an Obfuscation-as-a-Service for Android Malware Geost |
2020-04-22
⋅
FireEye
⋅
Vietnamese Threat Actors APT32 Targeting Wuhan Government and Chinese Ministry of Emergency Management in Latest Example of COVID-19 Related Espionage METALJACK |
2020-03-25
⋅
FireEye
⋅
This Is Not a Test: APT41 Initiates Global Intrusion Campaign Using Multiple Exploits Speculoos Cobalt Strike |
2019-01-29
⋅
FireEye
⋅
APT39: An Iranian Cyber Espionage Group Focused on Personal Information APT39 |
2019-01-10
⋅
FireEye
⋅
Global DNS Hijacking Campaign: DNS Record Manipulation at Scale DNSpionage DNSpionage |
2019-01-09
⋅
Mandiant
⋅
Global DNS Hijacking Campaign: DNS Record Manipulation at Scale DNSpionage Sea Turtle |
2018-10-03
⋅
Virus Bulletin
⋅
Uncovering the Wholesale Industry of Social Media Fraud: From Botnets to Bulk Reseller Panels Moose |
2018-09-18
⋅
The Citizenlab
⋅
Hide and Seek: Tracking NSO Group’s Pegasus Spyware to Operations in 45 Countries Chrysaor |
2018-03-09
⋅
Sandvine’s PacketLogic Devices Used to Deploy Government Spyware in Turkey and Redirect Egyptian Users to Affiliate Ads? StrongPity |
2017-12-06
⋅
The Citizen Lab
⋅
Champing at the Cyberbit Ethiopian Dissidents Targeted with New Commercial Spyware PC Surveillance System |
2016-11-02
⋅
GoSecure
⋅
Exposing the EGO MARKET: the cybercrime performed by the Linux/Moose botnet Moose |
2016-06-29
⋅
Emsisoft
⋅
Apocalypse: Ransomware which targets companies through insecure RDP Apocalypse |
2016-01-01
⋅
⋅
Emsisoft
⋅
Die erste Ransomware in JavaScript: Ransom32 Enrume |
2015-06-23
⋅
Reuters
⋅
Exclusive: SEC hunts hackers who stole corporate emails to trade stocks WOLF SPIDER |