Click here to download all references as Bib-File.•
| 2020-06-07
            
            ⋅
            
            Zero2Automated Blog
            ⋅ Dealing with Obfuscated Macros, Statically - NanoCore Nanocore RAT | 
| 2020-05-28
            
            ⋅
            
            Twitter (@Andrew___Morris)
            ⋅ Tweet on Sandworm threat actor exploiting CVE-2019-10149 | 
| 2020-05-25
            
            ⋅
            
            Twitter (@JAMESWT_MHT)
            ⋅ Tweet on FuckUnicorn instance of HiddenTear HiddenTear | 
| 2020-05-14
            
            ⋅
            
            Leonardo
            ⋅ Malware Technical Insight Turla "Penquin_x64" Penquin Turla | 
| 2020-05-12
            
            ⋅
            
            Twitter (@James_inthe_box)
            ⋅ Tweet on Himera Loader Himera Loader | 
| 2020-05-07
            
            ⋅
            
            Red Canary
            ⋅ Detecting COR_PROFILER manipulation for persistence | 
| 2020-05-05
            
            ⋅
            
            Github (StrangerealIntel)
            ⋅ Operation Flash Cobra | 
| 2020-05-04
            
            ⋅
            
            Twitter (@VK_intel)
            ⋅ GuLoader API Loader Algorithm CloudEyE | 
| 2020-04-29
            
            ⋅
            
            Twitter (@VK_intel)
            ⋅ Some Insight into GuLoader family CloudEyE | 
| 2020-04-21
            
            ⋅
            
            Twitter (@VK_intel)
            ⋅ Tweet on Signed GuLoader CloudEyE | 
| 2020-03-11
            
            ⋅
            
            Twitter (@casual_malware)
            ⋅ Tweet on FireBird RAT FireBird RAT | 
| 2020-03-09
            
            ⋅ py.unidentified_003 unidentified_003 | 
| 2020-03-09
            
            ⋅ py.unidentified_002 unidentified_002 | 
| 2020-03-09
            
            ⋅ py.unidentified_001 | 
| 2020-03-05
            
            ⋅
            
            JPCERT/CC
            ⋅ ELF_TSCookie - Linux Malware Used by BlackTech TSCookie | 
| 2020-02-12
            
            ⋅
            
            Twitter (@DrStache_)
            ⋅ Tweet on ManaBotnet Azorult | 
| 2020-02-04
            
            ⋅
            
            Github (onek1lo)
            ⋅ Borr-Stealer: Repository with decompiled code Borr | 
| 2020-02-04
            
            ⋅ Borr Malware Borr | 
| 2020-01-29
            
            ⋅
            
            nao_sec blog
            ⋅ An Overhead View of the Royal Road BLACKCOFFEE Cotx RAT Datper DDKONG Derusbi Icefog Korlia NewCore RAT PLAINTEE Poison Ivy Sisfader | 
| 2020-01-27
            
            ⋅
            
            Twitter (@siri_urz)
            ⋅ Tweet on Makop Ransomware Makop Ransomware |