Click here to download all references as Bib-File.•
2023-08-28
⋅
⋅
360
⋅
APT-C-55 (Kimsuky) organization uses Korean domain names for malicious activities |
2023-08-28
⋅
Gamaredon Activity amid Ukraine's Counteroffensive Pteranodon |
2023-08-28
⋅
Github (cocomelonc)
⋅
Malware and cryptography 20: encrypt/decrypt payload via Skipjack. Simple C++ example. |
2023-08-28
⋅
Juniper
⋅
DreamBus Botnet Resurfaces, Targets RocketMQ vulnerability DreamBus |
2023-08-28
⋅
JPCERT/CC
⋅
MalDoc in PDF - Detection bypass by embedding a malicious Word file into a PDF file – |
2023-08-28
⋅
The DFIR Report
⋅
HTML Smuggling Leads to Domain Wide Ransomware Cobalt Strike IcedID Nokoyawa Ransomware |
2023-08-26
⋅
BushidoToken Blog
⋅
Tracking Adversaries: Scattered Spider, the BlackCat affiliate BlackLotus POORTRY |
2023-08-26
⋅
rmceoin.github.io
⋅
ClearFake Malware Analysis ClearFake |
2023-08-25
⋅
Telekom
⋅
Shining some light on the DarkGate loader DarkGate |
2023-08-25
⋅
Github (telekom-security)
⋅
DarkGate configuration extractor DarkGate |
2023-08-25
⋅
Github (muha2xmad)
⋅
Technical analysis of WarZoneRAT malware Ave Maria |
2023-08-25
⋅
Github (muha2xmad)
⋅
Warzone RAT configuration extractor Ave Maria |
2023-08-24
⋅
circleid
⋅
Signs of MuddyWater Developments Found in the DNS PhonyC2 Storm-1084 |
2023-08-24
⋅
⋅
CYBERWISE
⋅
“Proxy” Based Phishing Attacks Are on the Rise Again |
2023-08-24
⋅
Elastic
⋅
Revisting BLISTER: New development of the BLISTER loader Blister |
2023-08-24
⋅
ANY.RUN
⋅
XWorm: Technical Analysis of a New Malware Version XWorm |
2023-08-24
⋅
Cisco Talos
⋅
Lazarus Group's infrastructure reuse leads to discovery of new malware Collection RAT |
2023-08-24
⋅
Elastic
⋅
Revisting BLISTER: New development of the BLISTER loader Blister |
2023-08-24
⋅
Github (muha2xmad)
⋅
StealC configuration extractor Stealc |
2023-08-24
⋅
Microsoft
⋅
Flax Typhoon using legitimate software to quietly access Taiwanese organizations Flax Typhoon |