Click here to download all references as Bib-File.•
2021-09-15
⋅
Microsoft
⋅
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability Cobalt Strike |
2021-09-07
⋅
Bleeping Computer
⋅
Microsoft shares temp fix for ongoing Office 365 zero-day attacks ( CVE-2021-40444) |
2021-09-03
⋅
FireEye
⋅
PST, Want a Shell? ProxyShell Exploiting Microsoft Exchange Servers CHINACHOPPER HTran |
2021-09-02
⋅
Microsoft
⋅
A deep-dive into the SolarWinds Serv-U SSH vulnerability (DEV-0322) |
2021-08-30
⋅
zero day initiative
⋅
ProxyToken: An Authentication Bypass in Microsoft Exchange Server |
2021-08-26
⋅
npr
⋅
China's Microsoft Hack May Have Had A Bigger Purpose Than Just Spying |
2021-08-26
⋅
CrowdStrike
⋅
NTLM Keeps Haunting Microsoft |
2021-08-26
⋅
Microsoft
⋅
Widespread credential phishing campaign abuses open redirector links |
2021-08-25
⋅
Cybleinc
⋅
​LockFile Ransomware: Exploiting Microsoft Exchange Vulnerabilities Using ProxyShell LockFile |
2021-08-23
⋅
Sophos SecOps
⋅
ProxyShell vulnerabilities in Microsoft Exchange: What to do LockFile |
2021-08-19
⋅
Microsoft
⋅
How to proactively defend against Mozi IoT botnet Mozi |
2021-08-19
⋅
Huntress Labs
⋅
Microsoft Exchange Servers Still Vulnerable to ProxyShell Exploit |
2021-08-10
⋅
Intezer
⋅
Fast Insights for a Microsoft-Signed Netfilter Rootkit NetfilterRootkit |
2021-08-04
⋅
FireEye
⋅
Cloudy with a Chance of APTNovel Microsoft 365 Attacks in the Wild |
2021-08-04
⋅
Microsoft
⋅
Spotting brand impersonation with Swin transformers and Siamese neural networks |
2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor BazarCall |
2021-07-29
⋅
Microsoft
⋅
When coin miners evolve, Part 2: Hunting down LemonDuck and LemonCat attacks Lemon Duck |
2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor Cobalt Strike |
2021-07-27
⋅
Palo Alto Networks Unit 42
⋅
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group PlugX |
2021-07-24
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on attackers increasingly using HTML smuggling in phishing and other email campaigns to deliver Casbaneiro Metamorfo |