Click here to download all references as Bib-File.•
| 2021-09-29
⋅
Medium BlueMonkey
⋅
Aria-Body Loader? Is that you? Aria-body |
| 2021-09-27
⋅
Medium ryancor
⋅
Deobfuscating PowerShell Malware Droppers Agent.BTZ |
| 2021-09-26
⋅
Medium BlueteamOps
⋅
Supercharging Bulk DFIR triage with Node-RED, Google’s Log2timeline & Google’s Timesketch |
| 2021-09-21
⋅
Medium elis531989
⋅
The Squirrel Strikes Back: Analysis of the newly emerged cobalt-strike loader “SquirrelWaffle” Cobalt Strike Squirrelwaffle |
| 2021-09-17
⋅
Medium inteloperator
⋅
The default: 63 6f 62 61 6c 74 strike Cobalt Strike |
| 2021-09-16
⋅
Medium Shabarkin
⋅
Pointer: Hunting Cobalt Strike globally Cobalt Strike |
| 2021-09-12
⋅
Medium michaelkoczwara
⋅
Mapping and Pivoting from Cobalt Strike C2 Infrastructure Attributed to CVE-2021-40444 Cobalt Strike |
| 2021-09-09
⋅
Medium s2wlab
⋅
Case Analysis of Suncrypt Ransomware Negotiation and Bitcoin Transaction SunCrypt |
| 2021-09-08
⋅
Medium s2wlab
⋅
Groove’s thoughts on Blackmatter, Babuk, and cheese shortages in the Netherlands Babuk BlackMatter Babuk BlackMatter |
| 2021-09-07
⋅
Medium michaelkoczwara
⋅
Cobalt Strike C2 Hunting with Shodan Cobalt Strike |
| 2021-09-07
⋅
Medium walmartglobaltech
⋅
Decoding SmartAssembly strings, a Haron ransomware case study Haron Ransomware |
| 2021-09-02
⋅
Medium michaelkoczwara
⋅
Cobalt Strike PowerShell Payload Analysis Cobalt Strike |
| 2021-09-01
⋅
Medium s2wlab
⋅
BlackMatter x Babuk : Using the same web server for sharing leaked files Babuk BlackMatter Babuk BlackMatter |
| 2021-08-29
⋅
Medium Asuna Amawaka
⋅
Quarians, Turians and…QuickHeal QuickHeal |
| 2021-08-21
⋅
Medium Crovax
⋅
Panda Banker Analysis Part 1 PandaBanker |
| 2021-08-20
⋅
⋅
Medium Berhan Bingöl
⋅
VirtualBox Detection, Anti-Detection |
| 2021-08-19
⋅
Medium walmartglobaltech
⋅
Looking at the new Krypton crypter and recent Data Exfiltrator Samples |
| 2021-08-17
⋅
Medium amgedwageh
⋅
LockBit Ransomware Analysis Notes LockBit |
| 2021-08-17
⋅
Medium michaelkoczwara
⋅
Cobalt Strike Hunting — DLL Hijacking/Attack Analysis Cobalt Strike |
| 2021-07-30
⋅
Medium walmartglobaltech
⋅
Decrypting BazarLoader strings with a Unicorn BazarBackdoor |