Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-01-09Github (f0wl)Marius Genheimer
ezuri_unpack
2021-01-07Github (hvs-consulting)HvS-Consulting AG
Lazarus / APT37 IOCs
Lazarus Group
2021-01-06Github (SentinelLabs)SentinelLabs
SolarWinds_Countermeasures
SUNBURST
2021-01-01Github (WBGlIl)WBGlIl
A book on cobaltstrike
Cobalt Strike
2020-12-27Github (arsium)arsium
HorusEyesRat
HorusEyes RAT
2020-12-21US Court of Appeals for the Ninth CourtCisco, Github, Google, Internet Association, LinkedIn, Microsoft, VMWare, WhatsApp
Case: 20-16408: WhatsApp et al. vs NSO Group
2020-12-16Github (RedDrip7)RedDrip7
A script to decode SUNBURST DGA domain
SUNBURST
2020-12-15Github (itsreallynick)Nick Carr
A quick note from Nick Carr on COSMICGALE and SUPERNOVA that those are unrelated to UC2452 intrusion campaign
SUPERNOVA
2020-12-15Github (Dump-GUY)Jiří Vinopal
Reverse engineering KPOT v2.0 Stealer
KPOT Stealer
2020-12-15Github (sophos-cybersecurity)Sophos Cyber Security Team
solarwinds-threathunt
Cobalt Strike SUNBURST
2020-12-13Github (fireeye)FireEye
SUNBURST Countermeasures
SUNBURST SUPERNOVA TEARDROP UNC2452
2020-12-12Github (cdong1012)Chuong Dong
ContiUnpacker: An automatic unpacker for Conti rasnomware
Conti
2020-12-09Github (fireeye)FireEye
Fireeye RED TEAM tool countermeasures
2020-11-09Trend MicroZhengyu Dong
An Old Joker’s New Tricks: Using Github To Hide Its Payload
Joker
2020-11-07Github (guitmz)Guilherme Thomazi Bonicontro
Linux.Midrashim
Midrashim
2020-11-05Github (scythe-io)SCYTHE
Ryuk Adversary Emulation Plan
Ryuk
2020-11-05JuniperAlex Burt, Trevor Pott
Gitpaste-12: a new worming botnet with reverse shell capability spreading via GitHub and Pastebin
Gitpaste-12
2020-10-30Github (ThreatConnect-Inc)ThreatConnect
UNC 1878 Indicators from Threatconnect
BazarBackdoor Cobalt Strike Ryuk
2020-10-29GitHub (LimerBoy)LimerBoy
StormKitty
StormKittyRAT
2020-10-29Github (Swisscom)Swisscom CSIRT
List of CobaltStrike C2's used by RYUK
Cobalt Strike