Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-11-28pat_h/to/filepat_h/to/file
Hunting Koadic Pt. 2 - JARM Fingerprinting
Koadic
2020-11-21Medium Intel-HoneyTwitter (@intel_honey)
Reversing Anubis Malware
Anubis
2020-11-19Twitter (@VK_intel)Vitali Kremez
Tweet on Trickbot Group pushing LIGHTBOT powershell script to gather information about AD Server
LightBot
2020-11-17Twitter (@VK_intel)Vitali Kremez
Tweet on a new fileless TrickBot loading method using code from MemoryModule
TrickBot
2020-11-16JPCERT/CCShusei Tomonaga
ELF_PLEAD - Linux Malware Used by BlackTech
PLEAD
2020-11-13Youtube (The Standoff)Alexey Zakharov, Positive Technologies
FF_202_Eng - From old Higaisa samples to new Winnti backdoors: The story of one research
CROSSWALK Unidentified 076 (Higaisa LNK to Shellcode)
2020-11-12Twitter (@ddash_ct)ddash
Tweet on Lootwodniw
Lootwodniw
2020-10-03Medium vishal_thakurVishal Thakur
Grinju Downloader: Anti-analysis (on steroids) | Part 2
Grinju Downloader
2020-09-22Medium (@vishal_thakur)Vishal Thakur
Grinju Downloader
Grinju Downloader
2020-09-11Twitter (@Arkbird_SOLG)Arkbird
Tweet on discovery of a sample
Turla SilentMoon
2020-09-03Twitter (@Arkbird_SOLG)Arkbird
Tweet on development in more_eggs
More_eggs
2020-08-17Twitter (@Arkbird_SOLG)Arkbird
Short twitter thread with analysis on Loup ATM malware
Loup
2020-08-15Twitter (@Int2e_)Adrien B
Tweet on DoubleFantasy
DoubleFantasy
2020-08-14Twitter (@VK_intel)Vitali Kremez
Tweet on Zloader infection leading to Cobaltstrike Installation
Cobalt Strike Zloader
2020-08-14Twitter (@James_inthe_box)James_inthe_box
Tweet on Echelon Stealer
2020-08-05BlackHatKevin Perlow
FASTCashand INJX_PURE: How Threat Actors Use Public Standards for Financial Fraud
FastCash
2020-07-28Medium (@vishal_thakur)Vishal Thakur
LOLSnif Malware
LOLSnif
2020-07-24Medium tom_rockThomas Roccia
Fifty Shades of Malware Strings
2020-07-13Stage 2 SecurityWaylon Grange
Anchor_dns malware goes cross platform
AnchorDNS
2020-07-06NTTSecurity division of NTT Ltd.
TrickBot variant “Anchor_DNS” communicating over DNS
AnchorDNS TrickBot