Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-09-04BellingcatBellingcat Investigation Team
Post-Mortem of a Triple Poisoning: New Details Emerge in GRU's Failed Murder Attempts in Bulgaria
2020-09-03Twitter (@Arkbird_SOLG)Arkbird
Tweet on development in more_eggs
More_eggs
2020-08-27Hatching.ioPete Cowman
Smokeloader Analysis and More Family Detections
SmokeLoader
2020-08-25Aqua NautilusAssaf Morag
Deep Analysis of TeamTNT Techniques Using Container Images to Attack
TeamTNT Tsunami XMRIG
2020-08-21Twitter (@GrujaRS)GrujaRS
New #Morseop #Ransomware
Sfile
2020-08-20BitdefenderAlexandru Maximciuc, Bogdan Rusu, Cristina Vatamanu, Liviu Arsene, Victor Vrabie
More Evidence of APT Hackers-for-Hire Usedfor Industrial Espionage
2020-08-20MorphisecArnold Osipov
QakBot (QBot) Maldoc Campaign Introduces Two New Techniques into Its Arsenal
QakBot
2020-08-07ESET ResearchVladislav Hrčka
Stadeo: Deobfuscating Stantinko and more
Stantinko
2020-07-31Department of JusticeDepartment of Justice
Malware Author Pleads Guilty for Role in Transnational Cybercrime Organization Responsible for more than $568 Million in Losses
FastPOS
2020-07-26Shells.System blogAskar
In-Memory shellcode decoding to evade AVs/EDRs
Cobalt Strike
2020-07-15Yahoo NewsJenna McLaughlin, Kim Zetter, Sean D. Naylor, Zach Dorfman
Exclusive: Secret Trump order gives CIA more powers to launch cyberattacks
2020-07-09ESET ResearchMatías Porolli
More evil: A deep look at Evilnum and its toolset
EVILNUM More_eggs EVILNUM TerraPreter TerraStealer TerraTV Evilnum
2020-07-08xunisonxunison
Analysis of SamoRAT
SamoRAT
2020-06-24MorphisecArnold Osipov
Obfuscated VBScript Drops Zloader, Ursnif, Qakbot, Dridex
Dridex ISFB QakBot Zloader
2020-06-23Kaspersky LabsAlexander Eremin
Oh, what a boot-iful mornin’ Rovnix bootkit back in business
Rovnix
2020-06-17Twitter (@Timele9527)Timele12138
Tweet on MoriAgent uesd by MuddyWater (incl YARA rule)
MoriAgent
2020-06-16MorphisecMichael Gorelik
CrystalBit / Apple Double DLL Hijack -- From fraudulent software bundle downloads to an evasive miner raging campaign
2020-06-04BitdefenderJanos Gergo Szeles, Ruben Andrei Condor
Loading DLLs for illicit profit. A story about a Metamorfo distribution campaign
Metamorfo
2020-06-02MorphisecArnold Osipov
Ursnif/Gozi Delivery - Excel Macro 4.0 Utilization Uptick & OCR Bypass
ISFB
2020-05-28CybereasonAssaf Dahan, Eli Salem, Lior Rochberger
Valak: More than Meets the Eye
Valak