Click here to download all references as Bib-File.•
2021-02-11
⋅
Twitter (@malwrhunterteam)
⋅
Tweet on one of the first Fedex-themed lures for FluBot FluBot |
2021-02-10
⋅
Anheng Threat Intelligence Center
⋅
Windows kernel zero-day exploit (CVE-2021-1732) is used by BITTER APT in targeted attack |
2021-02-04
⋅
HAL
⋅
From TTP to IoC: Advanced Persistent Graphs forThreat Hunting |
2021-02-01
⋅
One Night in Norfolk
⋅
DPRK Targeting Researchers II: .Sys Payload and Registry Hunting ComeBacker |
2021-01-28
⋅
Huntress Labs
⋅
Analyzing Ryuk Another Link in the Cyber Attack Chain BazarBackdoor Ryuk |
2021-01-28
⋅
axios
⋅
In cyber espionage, U.S. is both hunted and hunter |
2021-01-26
⋅
⋅
Anheng Threat Intelligence Center
⋅
Undefeated, hackers use Visual Studio compiler features to target binary vulnerabilities security researcher |
2021-01-25
⋅
SOC Prime
⋅
Affiliates vs Hunters: Fighting the DarkSide DarkSide |
2021-01-22
⋅
Symantec
⋅
SolarWinds: How Sunburst Sends Data Back to the Attackers SUNBURST |
2021-01-20
⋅
Twitter (@malwrhunterteam)
⋅
Tweet on Vovalex ransomware Vovalex |
2021-01-18
⋅
Symantec
⋅
Raindrop: New Malware Discovered in SolarWinds Investigation Cobalt Strike Raindrop SUNBURST TEARDROP |
2021-01-15
⋅
Symantec
⋅
SolarWinds: Insights into Attacker Command and Control Process SUNBURST |
2021-01-11
⋅
Palo Alto Networks Unit 42
⋅
xHunt Campaign: New BumbleBee Webshell and SSH Tunnels Used for Lateral Movement |
2021-01-07
⋅
Symantec
⋅
SolarWinds: How a Rare DGA Helped Attacker Communications Fly Under the Radar SUNBURST |
2021-01-06
⋅
Red Canary
⋅
Hunting for GetSystem in offensive security tools Cobalt Strike Empire Downloader Meterpreter PoshC2 |
2021-01-06
⋅
Malwarebytes
⋅
Retrohunting APT37: North Korean APT used VBA self decode technique to inject RokRat RokRAT |
2021-01-02
⋅
Twitter (MalwareHunterTeam)
⋅
Tweet on Knot Ransomware Knot |
2021-01-01
⋅
Symantec
⋅
Supply Chain Attacks:Cyber Criminals Target the Weakest Link Cobalt Strike Raindrop SUNBURST TEARDROP |
2020-12-22
⋅
CrowdStrike
⋅
Leftover Lunch: Finding, Hunting and Eradicating Spicy Hot Pot, a Persistent Browser Hijacking Rootkit Spicy Hot Pot |
2020-12-22
⋅
Symantec
⋅
SolarWinds Attacks: Stealthy Attackers Attempted To Evade Detection SUNBURST |