Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-05-24Medium s2wlabSeunghoe Kim
Deep Analysis of Raccoon Stealer
Raccoon
2021-05-19Medium Mehmet ErgeneMehmet Ergene
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 2
Cobalt Strike
2021-05-18Medium (Cryptax)Axelle Apvrille
A native packer for Android/MoqHao
MoqHao
2021-05-17Medium s2wlabDenise Dasom Kim, Hyunmin Suh, Jungyeon Lim, YH Jeong
W3 May | EN | Story of the week: Code Signing Certificate on the Darkweb
Stuxnet
2021-05-12Medium Mehmet ErgeneMehmet Ergene
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 1
Cobalt Strike
2021-05-07Medium svch0stsvch0st
Stats from Hunting Cobalt Strike Beacons
Cobalt Strike
2021-05-04Medium sergiusechelSergiu Sechel
Improving the network-based detection of Cobalt Strike C2 servers in the wild while reducing the risk of false positives
Cobalt Strike
2021-05-03Medium walmartglobaltechJason Reaves, Joshua Platt
BuerLoader Updates
Buer
2021-04-30Medium ateixeiAlex Teixeira
Detecting network beacons via KQL using simple spread stats functions
2021-04-27Medium Cedric OwensCedric Owens
macOS Gatekeeper Bypass (2021 Edition)
Shlayer
2021-04-26Medium testbnullMin-Chang Jang
Microsoft Exchange From Deserialization to Post-Auth RCE (CVE-2021–28482)
2021-04-24Medium lordx64Taha Karim
Initial analysis of PasswordState supply chain attack backdoor code
2021-04-20Medium PacktPackt
What Is Cyber Threat Intelligence?
2021-04-20Medium walmartglobaltechJason Reaves
CobaltStrike Stager Utilizing Floating Point Math
Cobalt Strike
2021-04-19Medium elis531989Eli Salem
Dancing With Shellcodes: Cracking the latest version of Guloader
CloudEyE
2021-04-16Medium (Bank Security)Bank_Security
Are the hackers all Russian? Results of a 1 year espionage operation in the Top-tier Russian underground communities
2021-04-15Medium BI.ZONEAnton Medvedev, Demyan Sokolin, Vadim Khrykov
Hunting Down MS Exchange Attacks. Part 1. ProxyLogon (CVE-2021–26855, 26858, 27065, 26857)
2021-04-09Medium walmartglobaltechJason Reaves
A Relook at the TerraLoader Dropper DLL
TerraLoader
2021-04-07Medium walmartglobaltechJason Reaves
Not your same old adware anymore, PBOT updates
2021-04-07Medium sixdubJustin Warner
Using Kaitai Struct to Parse Cobalt Strike Beacon Configs
Cobalt Strike