Click here to download all references as Bib-File.•
| 2022-07-13
⋅
Microsoft
⋅
Uncovering a macOS App Sandbox escape vulnerability: A deep dive into CVE-2022-26706 |
| 2022-07-13
⋅
NCC Group
⋅
Climbing Mount Everest: Black-Byte Bytes Back? BlackByte |
| 2022-07-13
⋅
Check Point
⋅
A Hit is made: Suspected India-based Sidewinder APT successfully cyber attacks Pakistan military focused targets Unidentified 093 (Sidewinder) |
| 2022-07-13
⋅
Trellix
⋅
Targeted Attack on Government Agencies AsyncRAT LimeRAT |
| 2022-07-13
⋅
Malwarebytes Labs
⋅
Cobalt Strikes again: UAC-0056 continues to target Ukraine in its latest campaign Cobalt Strike |
| 2022-07-12
⋅
Team Cymru
⋅
An Analysis of Infrastructure linked to the Hagga Threat Actor Hagga |
| 2022-07-12
⋅
Microsoft
⋅
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud |
| 2022-07-12
⋅
Team Cymru
⋅
An Analysis of Infrastructure linked to the Hagga Threat Actor Agent Tesla |
| 2022-07-12
⋅
Artik Blue
⋅
Malware analysis with IDA/Radare2 - Multiple unpacking (Ramnit worm) Ramnit |
| 2022-07-12
⋅
Zscaler
⋅
Rise in Qakbot attacks traced to evolving threat techniques QakBot |
| 2022-07-11
⋅
⋅
Cert-UA
⋅
UAC-0056 attack on Ukrainian state organizations using Cobalt Strike Beacon (CERT-UA#4941) Cobalt Strike |
| 2022-07-11
⋅
BBC
⋅
Predatory Sparrow: Who are the hackers who say they started a fire in Iran? Predatory Sparrow |
| 2022-07-11
⋅
Soc Investigation
⋅
Threat Actors Delivers New Rozena backdoor with Follina Bug – Detection & Response Rozena |
| 2022-07-11
⋅
Security Affairs
⋅
Anubis Networks is back with new C2 server Anubis |
| 2022-07-10
⋅
Seguranca Informatica
⋅
Anubis Network is back with new C2 server |
| 2022-07-10
⋅
Minerva Labs
⋅
Lockbit 3.0 AKA Lockbit Black is here, with a new icon, new ransom note, new wallpaper, but less evasiveness? LockBit |
| 2022-07-09
⋅
Artik Blue
⋅
Malware analysis with IDA/Radare2 - Basic Unpacking (Dridex first stage) Dridex |
| 2022-07-08
⋅
Twitter (@billyleonard)
⋅
Twiiter thread about some recent Turla activity spoofing the Azov Regiment ... but targeting Android users. |
| 2022-07-07
⋅
SOCRadar
⋅
Brute Ratel Utilized By Threat Actors In New Ransomware Operations Brute Ratel C4 |
| 2022-07-07
⋅
IBM
⋅
Unprecedented Shift: The Trickbot Group is Systematically Attacking Ukraine AnchorMail BumbleBee Cobalt Strike IcedID Meterpreter |