Click here to download all references as Bib-File.•
2021-03-15
⋅
Modern War Institute
⋅
Incorporating the Cyberspace Domain: How Russia and China Exploit Asymmetric Advantages in Great Power Competition |
2021-03-15
⋅
Team Cymru
⋅
FIN8: BADHATCH Threat Indicator Enrichmen BADHATCH |
2021-03-10
⋅
PICUS Security
⋅
Tactics, Techniques, and Procedures (TTPs) Used by HAFNIUM to Target Microsoft Exchange Servers CHINACHOPPER |
2021-03-08
⋅
Symantec
⋅
How Symantec Stops Microsoft Exchange Server Attacks CHINACHOPPER MimiKatz |
2021-03-08
⋅
Secureworks
⋅
SUPERNOVA Web Shell Deployment Linked to SPIRAL Threat Group SUPERNOVA BRONZE SPIRAL |
2021-02-18
⋅
Symantec
⋅
Lazarus: Three North Koreans Charged for Financially Motivated Attacks AppleJeus POOLRAT Unidentified macOS 001 (UnionCryptoTrader) AppleJeus Unidentified 077 (Lazarus Downloader) |
2021-02-05
⋅
Team Cymru
⋅
Kobalos Malware Mapping Potentially Impacted Networks and IP Address Mapping Kobalos |
2021-01-27
⋅
Team Cymru
⋅
Taking Down Emotet How Team Cymru Leveraged Visibility and Relationships to Coordinate Community Efforts Emotet |
2021-01-26
⋅
Team Cymru
⋅
GhostDNSbusters (Part 3) Illuminating GhostDNS Infrastructure |
2021-01-22
⋅
Symantec
⋅
SolarWinds: How Sunburst Sends Data Back to the Attackers SUNBURST |
2021-01-20
⋅
Team Cymru
⋅
MoqHao Part 1: Identifying Phishing Infrastructure MoqHao |
2021-01-18
⋅
Symantec
⋅
Raindrop: New Malware Discovered in SolarWinds Investigation Cobalt Strike Raindrop SUNBURST TEARDROP |
2021-01-18
⋅
Twitter (@teamcymru)
⋅
Tweet on APT36 CrimsonRAT C2 Crimson RAT |
2021-01-15
⋅
Symantec
⋅
SolarWinds: Insights into Attacker Command and Control Process SUNBURST |
2021-01-07
⋅
Symantec
⋅
SolarWinds: How a Rare DGA Helped Attacker Communications Fly Under the Radar SUNBURST |
2021-01-05
⋅
Trend Micro
⋅
An Overview of the DoppelPaymer Ransomware DoppelPaymer |
2021-01-01
⋅
Symantec
⋅
Supply Chain Attacks:Cyber Criminals Target the Weakest Link Cobalt Strike Raindrop SUNBURST TEARDROP |
2021-01-01
⋅
Secureworks
⋅
Threat Profile: GOLD SYMPHONY Buer GOLD SYMPHONY |
2020-12-22
⋅
Symantec
⋅
SolarWinds Attacks: Stealthy Attackers Attempted To Evade Detection SUNBURST |
2020-12-16
⋅
Pastebin
⋅
Paste of subdomain & DGA domain names used in SolarWinds attack SUNBURST UNC2452 |