Click here to download all references as Bib-File.•
2017-05-14
⋅
Comae
⋅
WannaCry — New Variants Detected! WannaCryptor |
2017-05-12
⋅
Comae
⋅
WannaCry — The largest ransom-ware infection in History WannaCryptor |
2017-05-03
⋅
FireEye
⋅
To SDB, Or Not To SDB: FIN7 Leveraging Shim Databases for Persistence FIN7 |
2017-04-04
⋅
GitHub (matthewdunwoody)
⋅
POSHSPY backdoor code POSHSPY |
2017-04-03
⋅
Cisco Talos
⋅
Introducing ROKRAT RokRAT |
2017-04-03
⋅
FireEye
⋅
Dissecting One of APT29’s Fileless WMI and PowerShell Backdoors (POSHSPY) POSHSPY APT29 |
2017-02-01
⋅
ESET Research
⋅
Read The Manual: A Guide to the RTM Banking Trojan RTM RTM |
2016-11-17
⋅
CitizenLab
⋅
It’s Parliamentary - KeyBoy and the targeting of the Tibetan Community KeyBoy |
2016-10-07
⋅
FireEye
⋅
Attacking the Hospitality and Gaming Industries: Tracking an Attacker Around the World in 7 Years RawPOS |
2016-05-12
⋅
Proofpoint
⋅
Hancitor and Ruckguv Reappear, Updated and With Vawtrak On Deck Hancitor Ruckguv |
2016-05-10
⋅
Proofpoint
⋅
Setting Sights On Retail: AbaddonPOS Now Targeting Specific POS Software AbaddonPOS TinyLoader |
2015-08-24
⋅
DarkMatters
⋅
Sphinx: New Zeus Variant for Sale on the Black Market Zeus Sphinx |
2015-01-01
⋅
Ruxcon
⋅
WHY ATTACKER TOOLSETS DO WHAT THEY DO Winnti |
2014-11-24
⋅
CrowdStrike
⋅
I am Ironman: DEEP PANDA Uses Sakula Malware to Target Organizations in Multiple Sectors APT19 |
2014-05-13
⋅
CrowdStrike
⋅
Cat Scratch Fever: CrowdStrike Tracks Newly Reported Iranian Actor as FLYING KITTEN Flying Kitten |
2014-03-12
⋅
Blog (Artem Baranov)
⋅
Uroburos: the snake rootkit Uroburos |
2013-10-10
⋅
CrowdStrike
⋅
Regional Conflict and Cyber Blowback Corsair Jackal |
2013-05-03
⋅
CrowdStrike
⋅
Department of Labor Strategic Web Compromise APT19 |
2011-08-27
⋅
Microsoft
⋅
Morto.A Morto |
2009-10-08
⋅
Defence Intelligence, Ministry of Defence UK
⋅
Mariposa Botnet Analysis Mariposa |
2009-07-08
⋅
The Guardian
⋅
Cyber attackers target South Korea and US Lazarus Group |
2004-04-15
⋅
SANS GIAC
⋅
MyDoom is Your Doom: An Analysis of the MyDoom Virus MyDoom |