Click here to download all references as Bib-File.•
2024-10-11
⋅
HarfangLab
⋅
HijackLoader evolution: abusing genuine signing certificates HijackLoader |
2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against Middle East STEALHOOK OilRig |
2024-10-11
⋅
Trend Micro
⋅
Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against UAE and Gulf Regions STEALHOOK |
2024-10-10
⋅
Hunt.io
⋅
Unmasking Adversary Infrastructure: How Certificates and Redirects Exposed Earth Baxia and PlugX Activity Cobalt Strike PlugX |
2024-10-10
⋅
Security Boulevard
⋅
Internet Archive is Attacked and 31 Million Files Stolen Blackmeta |
2024-10-10
⋅
SOCRadar
⋅
Internet Archive Data Breach and DDoS Attacks: What You Need to Know Blackmeta |
2024-10-09
⋅
Palo Alto
⋅
Contagious Interview: DPRK Threat Actors Lure Tech Industry Job Seekers to Install New Variants of BeaverTail and InvisibleFerret Malware BeaverTail Beavertail |
2024-10-03
⋅
Virus Bulletin
⋅
Sugarcoating KANDYKORN: a sweet dive into a sophisticated MacOS backdoor HLOADER KANDYKORN SUGARLOADER |
2024-10-03
⋅
CitizenLab
⋅
Disrupting COLDRIVER: U.S. court orders seizure of domains used in Russian cyberattacks Callisto |
2024-10-03
⋅
US Court for the District of Columbia
⋅
Civil Action No. 1:24-cv-02719-RC: Microsoft vs. Star Blizzard Callisto |
2024-09-30
⋅
OALabs
⋅
Latrodectus Extracting new AES encrypted strings from this RAT Latrodectus |
2024-09-30
⋅
X (@GenThreatLabs)
⋅
Tweet on FAKEUPDATES pushing WARMCOOKIE backdoor via compromised websites targeting France FAKEUPDATES WarmCookie |
2024-09-30
⋅
The DFIR Report
⋅
Nitrogen Campaign Drops Sliver and Ends With BlackCat Ransomware BlackCat Nitrogen Loader Sliver |
2024-09-27
⋅
Virus Bulletin
⋅
CrackedCantil: A Malware Symphony Delivered By Cracked Software; Performed By Loaders, Infostealers, Ransomware, Et Al. CrackedCantil |
2024-09-26
⋅
cyble
⋅
Nexe Backdoor Unleashed: Patchwork APT Group’s Sophisticated Evasion of Defenses |
2024-09-26
⋅
The Wall Street Journal
⋅
China-Linked Hackers Breach U.S. Internet Providers in New ‘Salt Typhoon’ Cyberattack GhostEmperor |
2024-09-26
⋅
Microsoft
⋅
Storm-0501: Ransomware attacks expanding to hybrid cloud environments Storm-0501 |
2024-09-25
⋅
Cloudflare
⋅
Unraveling SloppyLemming’s Operations Across South Asia SloppyLemming |
2024-09-24
⋅
Trend Micro
⋅
Earth Preta Evolves its Attacks with New Malware and Strategies FDMTP |
2024-09-24
⋅
ThreatFabric
⋅
Octo2: European Banks Already Under Attack by New Malware Variant Coper |