Click here to download all references as Bib-File.•
2022-01-13
⋅
Twitter (@8th_grey_owl)
⋅
Tweet on SelfMake Loader SelfMake Loader |
2022-01-12
⋅
Twitter (MalwareHunterTeam)
⋅
Tweet with original discovery of VajraSpy VajraSpy |
2022-01-11
⋅
Twitter (@cglyer)
⋅
Tweet on CN based ransomware operator using log4shell to deploy NightSky NightSky BRONZE STARLIGHT |
2022-01-11
⋅
Twitter (@cglyer)
⋅
Thread on DEV-0401, a china based ransomware operator exploiting VMware Horizon with log4shell and deploying NightSky ransomware Cobalt Strike NightSky |
2022-01-09
⋅
Twitter (@sixdub)
⋅
Tweet on malicious document used by Gamaredon aka DEV-0157 |
2021-12-28
⋅
Twitter (MalwareHunterTeam)
⋅
Tweet on RagnarLocker Linux variant RagnarLocker |
2021-12-21
⋅
Twitter (@sisoma2)
⋅
BlackCat Ransomware Linux variant BlackCat |
2021-12-16
⋅
Twitter (@nahamike01)
⋅
Tweet on SPIDERRAT malware used by CIRCUIT PANDA SPIDERPIG RAT |
2021-12-11
⋅
Twitter (@vxunderground)
⋅
Tweet on Gomorrah panel source code leak Gomorrah stealer |
2021-11-26
⋅
Twitter (@jhencinski)
⋅
Twitter Thread on weelky MDR recap from expel.io GootKit Squirrelwaffle |
2021-11-21
⋅
Twitter (@tylabs)
⋅
Twitter Thread about UNC1500 phishing using QAKBOT QakBot |
2021-11-20
⋅
Twitter (@eduardfir)
⋅
Tweet on Velociraptor artifact analysis for Emotet Emotet |
2021-11-19
⋅
Twitter (@knight0x07)
⋅
Tweet on Exmatter, custom data exfiltration tool, used by Blackmatter ransomware group ExMatter |
2021-11-18
⋅
Twitter (@tccontre18)
⋅
Tweet on how to decrypt 4 layers of encryption & obfuscation of vjw0rm Vjw0rm |
2021-11-17
⋅
Twitter (@Unit42_Intel)
⋅
Tweet on Matanbuchus Loader used to deliver Qakbot (tag obama128b) and follow-up CobaltStrike Cobalt Strike QakBot |
2021-11-16
⋅
Twitter (@_CPResearch_)
⋅
Tweet on 32bit version of CVE-2021-1732 exploited by BITTER group |
2021-11-16
⋅
Twitter (@_icebre4ker_)
⋅
Tweet about Aberebot source code put up for sale by the developer Aberebot |
2021-11-16
⋅
Twitter (@kienbigmummy)
⋅
Tweet on short analysis of QakBot QakBot |
2021-11-14
⋅
Twitter (@f0wlsec)
⋅
A static config extractor for the main component of DanaBot DanaBot |
2021-11-12
⋅
Twitter (@3xp0rtblog)
⋅
Tweets on DarkLoader DarkLoader |