Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-01-16Cisco TalosEric Kuhla, Paul Rascagnères, Vitor Ventura, Warren Mercer
JhoneRAT: Cloud based python RAT targeting Middle Eastern countries
JhoneRAT
2019-12-17CiscoDave Liebenberg, JJ Cummings
Incident Response lessons from recent Maze ransomware attacks
Maze
2019-10-31CISACISA
Malware Analysis Report (AR19-304A)
HOPLIGHT
2019-10-28Marco Ramilli's BlogMarco Ramilli
SWEED Targeting Precision Engineering Companies in Italy
Loki Password Stealer (PWS)
2019-10-21Cisco TalosChris Neal, Vitor Ventura
Gustuff return, new features for victims
Gustuff
2019-09-26Cisco TalosEdmund Brumaghin
Divergent: "Fileless" NodeJS Malware Burrows Deep Within the Host
Divergent
2019-09-24Cisco TalosJungsoo An, Paul Rascagnères, Warren Mercer
How Tortoiseshell created a fake veteran hiring website to host malware
Liderc SysKit
2019-09-09CISACISA
Malware Analysis Report (AR19-252A)
BADCALL BADCALL
2019-08-28Cisco TalosEdmund Brumaghin, Holger Unterbrink
RAT Ratatouille: Backdooring PCs with leaked RATs
Orcus RAT
2019-08-27Cisco TalosPaul Rascagnères, Vanja Svajcer
China Chopper still active 9 years later
CHINACHOPPER
2019-07-15Cisco TalosEdmund Brumaghin
SWEED: Exposing years of Agent Tesla campaigns
Agent Tesla Formbook Loki Password Stealer (PWS) SWEED
2019-07-09Cisco TalosPaul Rascagnères
Sea Turtle keeps on swimming, finds new victims, DNS hijacking techniques
Sea Turtle
2019-05-23Cisco TalosEdmund Brumaghin, Nick Biasini
Sorpresa! JasperLoader targets Italy with a new bag of tricks
JasperLoader
2019-05-23Cisco TalosMartin Lee
One year later: The VPNFilter catastrophe that wasn't
VPNFilter
2019-05-20CiscoDanny Adamitis, David Maynor, Kendall McKay
Recent MuddyWater-associated BlackWater campaign shows signs of new anti-detection techniques
MuddyWater
2019-05-09CISACISA
Malware Analysis Report (AR19-129A)
ELECTRICFISH Lazarus Group
2019-05-08VMRayFrancis Montesino
Get Smart with Enhanced Memory Dumping in VMRay Analyzer 3.0
Remcos
2019-05-02Cisco TalosAshlee Benge, Nick Randolph
Qakbot levels up with new obfuscation techniques
QakBot
2019-04-30Cisco TalosColin Grady, Jaeson Schultz, Matt Valites, Pierre Cadieux
Sodinokibi ransomware exploits WebLogic Server vulnerability
REvil
2019-04-25CiscoAndrew Williams, Edmund Brumaghin, Nick Biasini
JasperLoader Emerges, Targets Italy with Gootkit Banking Trojan
JasperLoader