Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-08-05BlackHatKevin Perlow
FASTCashand INJX_PURE: How Threat Actors Use Public Standards for Financial Fraud
FastCash
2020-07-28Medium (@vishal_thakur)Vishal Thakur
LOLSnif Malware
LOLSnif
2020-07-24Medium tom_rockThomas Roccia
Fifty Shades of Malware Strings
2020-07-13Stage 2 SecurityWaylon Grange
Anchor_dns malware goes cross platform
AnchorDNS
2020-07-06NTTSecurity division of NTT Ltd.
TrickBot variant “Anchor_DNS” communicating over DNS
AnchorDNS TrickBot
2020-06-22Github (StrangerealIntel)Twitter (@Arkbird_SOLG)
FTcode targets European countries
FTCODE
2020-06-17Twitter (@VK_intel)malwrhunterteam, Vitali Kremez
Tweet on signed Tinymet payload (V.02) used by TA505
TinyMet
2020-06-17Twitter (@VK_intel)malwrhunterteam, Vitali Kremez
Tweet on signed Tinymet payload (V.02) used by TA505
TinyMet
2020-06-11Twitter (@bad_packets)Bad Packets Report
Tweet on Honda & Enel Critix(NetScaler) VPN server vulnerable to CVE-2019-19781, possibly targeted by SNAKE ransomware
Snake
2020-06-10James_inthe_box, jeFF0Falltrades, _re_fox
FRat Reporting, YARA, and IoCs
FRat Loader FRat
2020-06-10James_inthe_box, jeFF0Falltrades, _re_fox
FRat Reporting, YARA, and IoCs
FRat Loader FRat
2020-06-09Lab52Lab52
Recent FK_Undead rootkit samples found in the wild
2020-06-08Stratosphere LabTwitter (@_lubiedo)
Dark Nexus: the old, the new and the ugly
Dark Nexus
2020-06-07Zero2Automated Blog0verfl0w_
Dealing with Obfuscated Macros, Statically - NanoCore
Nanocore RAT
2020-05-28Twitter (@Andrew___Morris)Andrew Morris
Tweet on Sandworm threat actor exploiting CVE-2019-10149
2020-05-25Twitter (@JAMESWT_MHT)JamesWT
Tweet on FuckUnicorn instance of HiddenTear
HiddenTear
2020-05-14LeonardoLeonardo’s Cyber Security division
Malware Technical Insight Turla "Penquin_x64"
Penquin Turla
2020-05-12Twitter (@James_inthe_box)James_inthe_box
Tweet on Himera Loader
Himera Loader
2020-05-07Red CanaryJesse Brown
Detecting COR_PROFILER manipulation for persistence
2020-05-05Github (StrangerealIntel)@Arkbird_SOLG
Operation Flash Cobra