Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2019-07-24Bayerischer RundfunkHakan Tanriverdi, Jan Strozyk, Maximilian Zierer, Rebecca Ciesielski, Svea Eckert
Attacking the Heart of the German Industry
Winnti
2019-07-02YoroiAntonio Farina, Antonio Pirozzi, Luca Mella
LooCipher: The New Infernal Ransomware
2019-05-20SentinelOneSentinelOne
GozNym Banking Malware: Gang Busted, But Is That The End?
Nymaim
2019-05-16The Shadowserver FoundationThe Shadowserver Foundation
Goznym Indictments – action following on from successful Avalanche Operations
Nymaim
2019-05-16Department of JusticeOffice of Public Affairs
GozNym Cyber-Criminal Network Operating out of Europe Targeting American Entities Dismantled in International Operation
Nymaim
2019-05-16EuropolEuropol
GOZNYM MALWARE: CYBERCRIMINAL NETWORK DISMANTLED IN INTERNATIONAL OPERATION
GozNym
2019-05-16SecurityIntelligenceLimor Kessem
GozNym Closure Comes in the Shape of a Europol and DOJ Arrest Operation
Nymaim
2019-05-16YoroiAntonio Pirozzi, Davide Testa, Luca Mella, Luigi Martire
The Stealthy Email Stealer in the TA505 Arsenal
TA505
2019-04-05YoroiAntonio Pirozzi, Davide Testa
Ursnif: The Latest Evolution of the Most Popular Banking Malware
ISFB
2019-03-02Ido Naor
An Israeli website nagish[.]co[.]il was compromised and one of its subdomains (embedded in dozens of websites (including gov and media) became temporary water holes for Israeli residents.
JCry
2019-02-12Nozomi NetworksAlessandro Di Pinto
GreyEnergy Malware Research Paper: Maldoc to Backdoor
GreyEnergy
2019-02-07YoroiAntonio Farina, Antonio Pirozzi, Davide Testa
Ursnif: Long Live the Steganography!
ISFB
2019-01-29FireEyeAndrew Thompson, Ben Read, Cristiana Brafman-Kittner, Nalani Fraser, Sanaz Yashar, Sarah Hawley, Yuri Rozhansky
APT39: An Iranian Cyber Espionage Group Focused on Personal Information
APT39
2019-01-28Minerva LabsAsaf Aprozper, Gal Bitensky
AZORult: Now, as A Signed “Google Update”
Azorult
2019-01-25Github (NozomiNetworks)NozomiNetworks
Toolkit collection developed to help malware analysts dissecting and detecting the packer used by GreyEnergy samples.
GreyEnergy
2019-01-11Cybaze-Yorio Z-LabAntonio Farina, Antonio Pirozzi, Luca Mella
The “AVE_MARIA” Malware
Ave Maria
2018-12-29Los Angeles TimesEmily Alpert Reyes, Meg James, Tony Barboza
Malware attack disrupts delivery of L.A. Times and Tribune papers across the U.S.
Ryuk
2018-12-20YoroiAntonio Pirozzi, Davide Testa, Luca Mella, Luigi Martire
Dissecting the Danabot Payload Targeting Italy
DanaBot
2018-11-19FireEyeAndrew Thompson, Ben Withnell, Jonathan Leathery, Matthew Dunwoody, Michael Matonis, Nick Carr
Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
Cobalt Strike
2018-11-18Stranded on Pylos BlogJoe
CozyBear – In from the Cold?
Cobalt Strike APT29