Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-09-11Twitter (@Arkbird_SOLG)Arkbird
Tweet on discovery of a sample
Turla SilentMoon
2020-09-03Twitter (@Arkbird_SOLG)Arkbird
Tweet on development in more_eggs
More_eggs
2020-08-17Twitter (@Arkbird_SOLG)Arkbird
Short twitter thread with analysis on Loup ATM malware
Loup
2020-08-15Twitter (@Int2e_)Adrien B
Tweet on DoubleFantasy
DoubleFantasy
2020-08-14Twitter (@VK_intel)Vitali Kremez
Tweet on Zloader infection leading to Cobaltstrike Installation
Cobalt Strike Zloader
2020-08-14Twitter (@James_inthe_box)James_inthe_box
Tweet on Echelon Stealer
2020-08-05BlackHatKevin Perlow
FASTCashand INJX_PURE: How Threat Actors Use Public Standards for Financial Fraud
FastCash
2020-07-28Medium (@vishal_thakur)Vishal Thakur
LOLSnif Malware
LOLSnif
2020-07-24Medium tom_rockThomas Roccia
Fifty Shades of Malware Strings
2020-07-13Stage 2 SecurityWaylon Grange
Anchor_dns malware goes cross platform
AnchorDNS
2020-07-06NTTSecurity division of NTT Ltd.
TrickBot variant “Anchor_DNS” communicating over DNS
AnchorDNS TrickBot
2020-06-22Github (StrangerealIntel)Twitter (@Arkbird_SOLG)
FTcode targets European countries
FTCODE
2020-06-17Twitter (@VK_intel)malwrhunterteam, Vitali Kremez
Tweet on signed Tinymet payload (V.02) used by TA505
TinyMet
2020-06-11Twitter (@bad_packets)Bad Packets Report
Tweet on Honda & Enel Critix(NetScaler) VPN server vulnerable to CVE-2019-19781, possibly targeted by SNAKE ransomware
Snake
2020-06-10James_inthe_box, jeFF0Falltrades, _re_fox
FRat Reporting, YARA, and IoCs
FRat Loader FRat
2020-06-09Lab52Lab52
Recent FK_Undead rootkit samples found in the wild
2020-06-08Stratosphere LabTwitter (@_lubiedo)
Dark Nexus: the old, the new and the ugly
Dark Nexus
2020-06-07Zero2Automated Blog0verfl0w_
Dealing with Obfuscated Macros, Statically - NanoCore
Nanocore RAT
2020-05-28Twitter (@Andrew___Morris)Andrew Morris
Tweet on Sandworm threat actor exploiting CVE-2019-10149
2020-05-25Twitter (@JAMESWT_MHT)JamesWT
Tweet on FuckUnicorn instance of HiddenTear
HiddenTear