Click here to download all references as Bib-File.•
2022-05-09
⋅
Microsoft
⋅
Ransomware-as-a-service: Understanding the cybercrime gig economy and how to protect yourself AnchorDNS BlackCat BlackMatter Conti DarkSide HelloKitty Hive LockBit REvil FAKEUPDATES Griffon ATOMSILO BazarBackdoor BlackCat BlackMatter Blister Cobalt Strike Conti DarkSide Emotet FiveHands Gozi HelloKitty Hive IcedID ISFB JSSLoader LockBit LockFile Maze NightSky Pandora Phobos Phoenix Locker PhotoLoader QakBot REvil Rook Ryuk SystemBC TrickBot WastedLocker BRONZE STARLIGHT |
2022-05-06
⋅
Twitter (@MsftSecIntel)
⋅
Twitter Thread on initial infeciton of SocGholish/ FAKEUPDATES campaigns lead to BLISTER Loader, CobaltStrike, Lockbit and followed by Hands On Keyboard activity FAKEUPDATES Blister Cobalt Strike LockBit |
2022-04-27
⋅
Microsoft
⋅
Special Report: Ukraine An overview of Russia’s cyberattack activity in Ukraine CaddyWiper DoubleZero HermeticWiper INDUSTROYER2 IsaacWiper PartyTicket WhisperGate |
2022-04-20
⋅
Bleeping Computer
⋅
Microsoft Exchange servers hacked to deploy Hive ransomware Babuk BlackByte Conti Hive LockFile |
2022-04-13
⋅
Microsoft
⋅
Notorious cybercrime gang’s botnet disrupted Ryuk Zloader |
2022-04-13
⋅
Microsoft
⋅
Dismantling ZLoader: How malicious ads led to disabled security tools and ransomware BlackMatter Cobalt Strike DarkSide Ryuk Zloader |
2022-04-12
⋅
Microsoft Security
⋅
Tarrask malware uses scheduled tasks for defense evasion Godzilla Webshell |
2022-04-08
⋅
The Hacker News
⋅
Microsoft Obtains Court Order to Take Down Domains Used to Target Ukraine HilalRAT |
2022-04-07
⋅
Perception Point
⋅
Revenge RAT Malware is back: From Microsoft Excel macros to Remote Access Trojan Revenge RAT |
2022-04-07
⋅
Microsoft
⋅
Disrupting cyberattacks targeting Ukraine (APT28) |
2022-04-04
⋅
Cloudsek
⋅
Detailed Analysis of LAPSUS$ Cybercriminal Group that has Compromised Nvidia, Microsoft, Okta, and Globant |
2022-03-31
⋅
CrowdStrike
⋅
Cloudy with a Chance of Unclear Mailbox Sync: CrowdStrike Services Identifies Logging Inconsistencies in Microsoft 365 |
2022-03-28
⋅
Sentinel LABS
⋅
Pwning Microsoft Azure Defender for IoT | Multiple Flaws Allow Remote Code Execution for All |
2022-03-28
⋅
Bleeping Computer
⋅
Microsoft Exchange targeted for IcedID reply-chain hijacking attacks IcedID |
2022-03-24
⋅
Threat Post
⋅
Microsoft Help Files Disguise Vidar Malware Vidar |
2022-03-24
⋅
CSO Online
⋅
Microsoft help files repurposed to contain Vidar malware in new campaign Vidar |
2022-03-24
⋅
Bleeping Computer
⋅
Malicious Microsoft Excel add-ins used to deliver RAT malware JSSLoader |
2022-03-23
⋅
SecurityAffairs
⋅
It’s official, Lapsus$ gang compromised a Microsoft employee’s account RedLine Stealer |
2022-03-22
⋅
Microsoft
⋅
DEV-0537 criminal actor targeting organizations for data exfiltration and destruction LAPSUS |
2022-03-22
⋅
Microsoft
⋅
DEV-0537 (UNC3661) criminal actor targeting organizations for data exfiltration and destruction RedLine Stealer LAPSUS |