Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-01-01Github (WBGlIl)WBGlIl
A book on cobaltstrike
Cobalt Strike
2020-12-27Github (arsium)arsium
HorusEyesRat
HorusEyes RAT
2020-12-21US Court of Appeals for the Ninth CourtCisco, Github, Google, Internet Association, LinkedIn, Microsoft, VMWare, WhatsApp
Case: 20-16408: WhatsApp et al. vs NSO Group
2020-12-16Github (RedDrip7)RedDrip7
A script to decode SUNBURST DGA domain
SUNBURST
2020-12-15Github (itsreallynick)Nick Carr
A quick note from Nick Carr on COSMICGALE and SUPERNOVA that those are unrelated to UC2452 intrusion campaign
SUPERNOVA
2020-12-15Github (Dump-GUY)Jiří Vinopal
Reverse engineering KPOT v2.0 Stealer
KPOT Stealer
2020-12-15Github (sophos-cybersecurity)Sophos Cyber Security Team
solarwinds-threathunt
Cobalt Strike SUNBURST
2020-12-13Github (fireeye)FireEye
SUNBURST Countermeasures
SUNBURST SUPERNOVA TEARDROP UNC2452
2020-12-12Github (cdong1012)Chuong Dong
ContiUnpacker: An automatic unpacker for Conti rasnomware
Conti
2020-12-09Github (fireeye)FireEye
Fireeye RED TEAM tool countermeasures
2020-11-09Trend MicroZhengyu Dong
An Old Joker’s New Tricks: Using Github To Hide Its Payload
Joker
2020-11-07Github (guitmz)Guilherme Thomazi Bonicontro
Linux.Midrashim
Midrashim
2020-11-05Github (scythe-io)SCYTHE
Ryuk Adversary Emulation Plan
Ryuk
2020-11-05JuniperAlex Burt, Trevor Pott
Gitpaste-12: a new worming botnet with reverse shell capability spreading via GitHub and Pastebin
Gitpaste-12
2020-10-30Github (ThreatConnect-Inc)ThreatConnect
UNC 1878 Indicators from Threatconnect
BazarBackdoor Cobalt Strike Ryuk
2020-10-29Github (Swisscom)Swisscom CSIRT
List of CobaltStrike C2's used by RYUK
Cobalt Strike
2020-10-28Github (aaronst)Aaron Stephens
UNC1878 indicators
Ryuk UNC1878
2020-10-11Github (StrangerealIntel)StrangerealIntel
Chimera, APT19 under the radar ?
Cobalt Strike Meterpreter
2020-10-07Github (brompwnie)Chris Le Roy
Break out the Box (BOtB)
Break out the Box
2020-10-01Github (eset)Matthieu Faou
XDSpy Indicators of Compromise
XDSpy XDSpy