Click here to download all references as Bib-File.•
2021-08-04
⋅
Netcraft
⋅
FluBot malware spreads to Australia FluBot |
2021-08-04
⋅
Sapienza University of Rome
⋅
Rope: Bypassing Behavioral Detection of Malware with Distributed ROP-driven Execution (white paper) |
2021-08-04
⋅
Sapienza University of Rome
⋅
Rope: Bypassing Behavioral Detection of Malware with Distributed ROP-driven Execution (slides) |
2021-08-03
⋅
PTSecurity
⋅
APT31 new dropper. Target destinations: Mongolia, Russia, the U.S., and elsewhere |
2021-07-28
⋅
CISA
⋅
Top Routinely Exploited Vulnerabilities |
2021-07-19
⋅
Minister for Foreign Affairs of Australia
⋅
Australia joins international partners in attribution of malicious cyber activity to China APT31 APT40 HAFNIUM |
2021-07-09
⋅
cyjax
⋅
REvil-ution – A Persistent Ransomware Operation REvil |
2021-07-04
⋅
Twitter (@PolarToffee)
⋅
Tweet on AvosLocker, ransomware advertising for affiliates through Dread |
2021-07-01
⋅
Avast Decoded
⋅
Backdoored Client from Mongolian CA MonPass Cobalt Strike Earth Lusca |
2021-07-01
⋅
Avast Decoded
⋅
Backdoored Client from Mongolian CA MonPass Cobalt Strike FishMaster |
2021-07-01
⋅
The Record
⋅
Mongolian certificate authority hacked eight times, compromised with malware Cobalt Strike |
2021-07-01
⋅
Trend Micro
⋅
PurpleFox Using WPAD to Target Indonesian Users PurpleFox |
2021-06-30
⋅
Guardicore
⋅
SMB Worm “Indexsinas” Uses Lateral Movement to Infect Whole Networks |
2021-06-30
⋅
Group-IB
⋅
REvil Twins Deep Dive into Prolific RaaS Affiliates' TTPs Cobalt Strike REvil |
2021-06-22
⋅
Maltego
⋅
Chasing DarkSide Affiliates: Identifying Threat Actors Connected to Darkside Ransomware Using Maltego & Intel 471 DarkSide DarkSide |
2021-06-22
⋅
Twitter (@Cryptolaemus1)
⋅
Tweet on TA575, a Dridex affiliate delivering cobaltstrike (packed withe Cryptone) directly via the macro docs Cobalt Strike Dridex |
2021-06-21
⋅
RAND Corporation
⋅
Deciphering Chinese Deterrence Signalling in the New Era An Analytic Framework and Seven Case Studies |
2021-06-17
⋅
Trend Micro
⋅
Bash Ransomware DarkRadiation Targets Red Hat- and Debian-based Linux Distributions |
2021-06-16
⋅
Mandiant
⋅
Smoking Out a DARKSIDE Affiliate’s Supply Chain Software Compromise DarkSide Cobalt Strike DarkSide SMOKEDHAM UNC2465 |
2021-06-16
⋅
Mandiant
⋅
Smoking Out a DARKSIDE Affiliate’s Supply Chain Software Compromise Cobalt Strike SMOKEDHAM |