Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2024-04-03 ⋅ Wired ⋅ Andy Greenberg, Matt Burgess
The Mystery of ‘Jia Tan,’ the XZ Backdoor Mastermind
xzbot
2024-04-03 ⋅ Trend Micro ⋅ Christopher Boyton
Unveiling the Fallout: Operation Cronos' Impact on LockBit Following Landmark Disruption
LockBit
2024-04-02 ⋅ SentinelOne ⋅ Phil Stokes
Session Cookies, Keychains, SSH Keys and More | 7 Kinds of Data Malware Steals from macOS Users
EggShell RAT KeySteal Pureland
2024-04-02 ⋅ Kaspersky ⋅ Kaspersky Lab ICS CERT
APT and financial attacks on industrial organizations in H2 2023
HellHounds
2024-04-02 ⋅ SonicWall ⋅ SonicWall
Updated StrelaStealer Targeting European Countries
StrelaStealer
2024-04-02 ⋅ Darktrace ⋅ Alexandra Sentenac, Trent Kessler, Victoria Baldie
The Early Bird Catches the Worm: Darktrace’s Hunt for Raspberry Robin
Raspberry Robin
2024-04-02 ⋅ Trend Micro ⋅ Christopher So
Earth Freybug Uses UNAPIMON for Unhooking Critical APIs
APT41 Earth Freybug
2024-04-02 ⋅ Forescout ⋅ Forescout Vedere Labs
“All your base are belong to us” – A probe into Chinese-connected devices in US networks
2024-04-02 ⋅ Check Point Research ⋅ Antonis Terefos, Raman Ladutska
Agent Tesla Targeting United States & Australia: Revealing the Attackers' Identities
Agent Tesla Bignosa
2024-04-01 ⋅ SOCRadar ⋅ SOCRadar
U.S. Faces Cyber Onslaught: Fico Breach, ID, CC, Military Data Sale
CyberNiggers
2024-04-01 ⋅ Twitter (@embee_research) ⋅ Embee_research
Passive DNS For Phishing Link Analysis - Identifying 36 Latrodectus Domains With Historical Records and 302 Redirects
Latrodectus
2024-04-01 ⋅ Microsoft ⋅ Microsoft Threat Analysis Center (MTAC)
Same targets, new playbooks: East Asia threat actors employ unique methods
2024-04-01 ⋅ The DFIR Report ⋅ The DFIR Report
From OneNote to RansomNote: An Ice Cold Intrusion
Cobalt Strike IcedID Nokoyawa Ransomware PhotoLoader
2024-04-01 ⋅ Github (amlweems) ⋅ Anthony Weems
Analysis Repo with honeypot and backdoor patch for xzbot
xzbot
2024-04-01 ⋅ ThreatMon ⋅ Kerime Gencay
RisePro Stealer Malware Analysis Report
RisePro
2024-03-31 ⋅ Check Point Research ⋅ Check Point
Malware Spotlight: Linodas aka DinodasRAT for Linux
Linodas
2024-03-31 ⋅ Github (karcherm) ⋅ Michael Karcher
Information about the liblzma (xz-utils) backdoor
xzbot
2024-03-31 ⋅ Twitter (@fr0gger) ⋅ Thomas Roccia
Tweet with visual summary of the execution flow
xzbot
2024-03-30 ⋅ Estrellas's Blog ⋅ Otávio M.
Glupteba's .NET dropper deep dive.
Glupteba
2024-03-30 ⋅ Gynvael.Coldwind//vx.log ⋅ Gynvael Coldwind
xz/liblzma: Bash-stage Obfuscation Explained
xzbot