Click here to download all references as Bib-File.•
| 2017-07-31
⋅
Proofpoint
⋅
FIN7/Carbanak threat actor unleashes Bateleur JScript backdoor Bateleur FIN7 |
| 2017-07-20
⋅
ESET Research
⋅
Stantinko: A massive adware campaign operating covertly since 2012 Stantinko |
| 2017-07-05
⋅
Cisco Talos
⋅
The MeDoc Connection TeleDoor |
| 2017-06-28
⋅
Comae
⋅
Petya.2017 is a wiper not a ransomware |
| 2017-06-21
⋅
Cisco
⋅
Player 1 Limps Back Into the Ring - Hello again, Locky! Locky |
| 2017-06-01
⋅
Proofpoint
⋅
Microsoft Word Intruder Integrates CVE-2017-0199, Utilized by Cobalt Group to Target Financial Institutions Cobalt |
| 2017-05-19
⋅
Comae
⋅
WannaCry — Decrypting files with WanaKiwi + Demos WannaCryptor |
| 2017-05-14
⋅
Comae
⋅
WannaCry — New Variants Detected! WannaCryptor |
| 2017-05-12
⋅
Comae
⋅
WannaCry — The largest ransom-ware infection in History WannaCryptor |
| 2017-05-03
⋅
FireEye
⋅
To SDB, Or Not To SDB: FIN7 Leveraging Shim Databases for Persistence FIN7 |
| 2017-04-04
⋅
GitHub (matthewdunwoody)
⋅
POSHSPY backdoor code POSHSPY |
| 2017-04-03
⋅
Cisco Talos
⋅
Introducing ROKRAT RokRAT |
| 2017-04-03
⋅
FireEye
⋅
Dissecting One of APT29’s Fileless WMI and PowerShell Backdoors (POSHSPY) POSHSPY APT29 |
| 2017-02-01
⋅
ESET Research
⋅
Read The Manual: A Guide to the RTM Banking Trojan RTM RTM |
| 2016-11-17
⋅
CitizenLab
⋅
It’s Parliamentary - KeyBoy and the targeting of the Tibetan Community KeyBoy |
| 2016-10-07
⋅
FireEye
⋅
Attacking the Hospitality and Gaming Industries: Tracking an Attacker Around the World in 7 Years RawPOS |
| 2016-05-12
⋅
Proofpoint
⋅
Hancitor and Ruckguv Reappear, Updated and With Vawtrak On Deck Hancitor Ruckguv |
| 2016-05-10
⋅
Proofpoint
⋅
Setting Sights On Retail: AbaddonPOS Now Targeting Specific POS Software AbaddonPOS TinyLoader |
| 2015-08-24
⋅
DarkMatters
⋅
Sphinx: New Zeus Variant for Sale on the Black Market Zeus Sphinx |
| 2015-01-01
⋅
Ruxcon
⋅
WHY ATTACKER TOOLSETS DO WHAT THEY DO Winnti |
| 2014-11-24
⋅
CrowdStrike
⋅
I am Ironman: DEEP PANDA Uses Sakula Malware to Target Organizations in Multiple Sectors APT19 |
| 2014-05-13
⋅
CrowdStrike
⋅
Cat Scratch Fever: CrowdStrike Tracks Newly Reported Iranian Actor as FLYING KITTEN Flying Kitten |
| 2014-03-12
⋅
Blog (Artem Baranov)
⋅
Uroburos: the snake rootkit Uroburos |
| 2013-10-10
⋅
CrowdStrike
⋅
Regional Conflict and Cyber Blowback Corsair Jackal |
| 2013-05-03
⋅
CrowdStrike
⋅
Department of Labor Strategic Web Compromise APT19 |
| 2011-08-27
⋅
Microsoft
⋅
Morto.A Morto |
| 2009-10-08
⋅
Defence Intelligence, Ministry of Defence UK
⋅
Mariposa Botnet Analysis Mariposa |
| 2009-07-08
⋅
The Guardian
⋅
Cyber attackers target South Korea and US Lazarus Group |
| 2004-04-15
⋅
SANS GIAC
⋅
MyDoom is Your Doom: An Analysis of the MyDoom Virus MyDoom |