Click here to download all references as Bib-File.•
2021-08-17
⋅
Huntress Labs
⋅
Snakes on a Domain: An Analysis of a Python Malware Loader |
2021-08-15
⋅
Symantec
⋅
The Ransomware Threat Babuk BlackMatter DarkSide Avaddon Babuk BADHATCH BazarBackdoor BlackMatter Clop Cobalt Strike Conti DarkSide DoppelPaymer Egregor Emotet FiveHands FriedEx Hades IcedID LockBit Maze MegaCortex MimiKatz QakBot RagnarLocker REvil Ryuk TrickBot WastedLocker |
2021-08-05
⋅
Symantec
⋅
Attacks Against Critical Infrastructure: A Global Concern BlackEnergy DarkSide DistTrack Stuxnet |
2021-08-03
⋅
CrowdStrike
⋅
Squashing SPIDERS: Threat Intelligence, Threat Hunting and Rapid Response Stops SQL Injection Campaign |
2021-08-02
⋅
⋅
360 Threat Intelligence Center
⋅
Operation Hunting - The latest attack by the CNC (APT-C-48) has been revealed |
2021-07-29
⋅
Microsoft
⋅
When coin miners evolve, Part 2: Hunting down LemonDuck and LemonCat attacks Lemon Duck |
2021-07-28
⋅
Prevailion
⋅
Cert Safari: Leveraging TLS Certificates to Hunt Evil |
2021-07-26
⋅
vmware
⋅
Hunting IcedID and unpacking automation with Qiling IcedID |
2021-07-25
⋅
Medium svch0st
⋅
Guide to Named Pipes and Hunting for Cobalt Strike Pipes Cobalt Strike |
2021-07-22
⋅
Medium michaelkoczwara
⋅
Cobalt Strike Hunting — simple PCAP and Beacon Analysis Cobalt Strike |
2021-07-20
⋅
Huntress Labs
⋅
Security Researchers’ Hunt to Discover Origins of the Kaseya VSA Mass Ransomware Incident REvil |
2021-07-19
⋅
Fortinet
⋅
Fresh Malware Hunts for Crypto Wallet and Credentials |
2021-07-15
⋅
BrightTALK
⋅
Visual investigations - Speed up your IR, Forensic Analysis and Hunting Tiger RAT |
2021-07-13
⋅
Symantec
⋅
Attacks Against the Government Sector Raindrop TEARDROP |
2021-07-03
⋅
Symantec
⋅
Kaseya Ransomware Supply Chain Attack: What You Need To Know REvil |
2021-07-02
⋅
Huntress Labs
⋅
Crticial Ransomware Incident in Progress REvil |
2021-06-23
⋅
Symantec
⋅
Ransomware: Growing Number of Attackers Using Virtual Machines Mount Locker |
2021-06-21
⋅
lacework
⋅
Threat Hunting SSH Keys – Bash Script Feature Pivoting |
2021-06-16
⋅
Medium BI.ZONE
⋅
Hunting Down MS Exchange Attacks. Part 2 (CVE-2020–0688, CVE-2020–16875, CVE-2021–24085) |
2021-06-10
⋅
HUNT & HACKETT
⋅
REvil: the usage of legitimate remote admin tooling REvil |