Click here to download all references as Bib-File.•
2022-10-13
⋅
Syrion
⋅
QAKBOT BB Configuration and C2 IPs List QakBot |
2022-10-13
⋅
Bleeping Computer
⋅
Trend Micro warns of actively exploited Apex One RCE vulnerability (CVE-2022-40139) |
2022-10-13
⋅
Microsoft
⋅
Hunting for Cobalt Strike: Mining and plotting for fun and profit Cobalt Strike |
2022-10-13
⋅
Spamhaus
⋅
Spamhaus Botnet Threat Update Q3 2022 FluBot Arkei Stealer AsyncRAT Ave Maria BumbleBee Cobalt Strike DCRat Dridex Emotet Loki Password Stealer (PWS) Nanocore RAT NetWire RC NjRAT QakBot RecordBreaker RedLine Stealer Remcos Socelars Tofsee Vjw0rm |
2022-10-13
⋅
Fortinet
⋅
Ransomware Roundup: Royal Ransomware Royal Ransom |
2022-10-13
⋅
HP
⋅
Magniber Ransomware Adopts JavaScript, Targeting Home Users with Fake Software Updates Magniber |
2022-10-13
⋅
Booz Allen Hamilton
⋅
Same Cloak, More Dagger: Decoding how the People's Republic of China uses Cyberattacks |
2022-10-13
⋅
Blackberry
⋅
BianLian Ransomware Encrypts Files in the Blink of an Eye BianLian |
2022-10-12
⋅
AhnLab
⋅
Analysis on Attack Techniques and Cases Using RDP CreateHiddenAccount |
2022-10-12
⋅
ThreatFabric
⋅
TOAD attacks: Vishing combined with Android banking malware now targeting Italian banks BRATA Copybara Joker |
2022-10-12
⋅
Trend Micro
⋅
Black Basta Ransomware Gang Infiltrates Networks via QAKBOT, Brute Ratel, and Cobalt Strike Black Basta Brute Ratel C4 Cobalt Strike QakBot |
2022-10-12
⋅
Netresec
⋅
IcedID BackConnect Protocol IcedID |
2022-10-12
⋅
Twitter (@embee_research)
⋅
Tweets on detection of Brute Ratel via API Hashes Brute Ratel C4 |
2022-10-12
⋅
SentinelOne
⋅
WIP19 Espionage | New Chinese APT Targets IT Service Providers and Telcos With Signed Malware Maggie ScreenCap WIP19 |
2022-10-12
⋅
Spamhaus
⋅
Dissecting the new shellcode-based variant of GuLoader (CloudEyE) CloudEyE |
2022-10-12
⋅
⋅
AhnLab
⋅
Lazarus Group Uses the DLL Side-Loading Technique (mi.dll) |
2022-10-11
⋅
Twitter (@embee_research)
⋅
Tweet on Havoc C2 - Static Detection Via Ntdll API Hashes Havoc |
2022-10-11
⋅
Medium (@DCSO_CyTec)
⋅
Tracking down Maggie Maggie |
2022-10-11
⋅
DeepInstinct
⋅
The Russian SpyAgent – a Decade Later and RAT Tools Remain at Risk TeamSpy |
2022-10-11
⋅
BleepingComputer
⋅
Hacking group POLONIUM uses ‘Creepy’ malware against Israel DeepCreep MegaCreep Unidentified 097 (Polonium Keylogger) |