Click here to download all references as Bib-File.•
2021-05-20
⋅
lacework
⋅
8220 Gangs Recent use of Custom Miner and Botnet |
2021-05-20
⋅
Github (microsoft)
⋅
Microsoft 365 Defender Hunting Queries for hunting multiple threat actors' TTPs and malwares STRRAT OceanLotus BabyShark Elise Revenge RAT WastedLocker Zebrocy |
2021-05-19
⋅
Team Cymru
⋅
Tracking BokBot Infrastructure Mapping a Vast and Currently Active BokBot Network IcedID |
2021-05-19
⋅
Medium Mehmet Ergene
⋅
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 2 Cobalt Strike |
2021-05-19
⋅
Nozomi Networks
⋅
Colonial Pipeline Ransomware Attack: Revealing How DarkSide Works DarkSide |
2021-05-19
⋅
The Record
⋅
SolarWinds CEO apologizes for blaming an intern, says attack may have started in January 2019 |
2021-05-19
⋅
The Wall Street Journal
⋅
Colonial Pipeline CEO Tells Why He Paid Hackers a $4.4 Million Ransom DarkSide DarkSide |
2021-05-18
⋅
Sophos
⋅
The Active Adversary Playbook 2021 Cobalt Strike MimiKatz |
2021-05-18
⋅
Blackberry
⋅
Strong ARMing with MacOS: Adventures in Cross-Platform Emulation |
2021-05-18
⋅
Elastic
⋅
ProblemChild: Detecting living-off-the-land attacks using the Elastic Stack |
2021-05-18
⋅
Youtube (AhmedS Kasmani)
⋅
Malware Analysis: Agent Tesla Part 1/2 Extraction of final payload from dropper. Agent Tesla |
2021-05-18
⋅
Medium (Cryptax)
⋅
A native packer for Android/MoqHao MoqHao |
2021-05-18
⋅
Digital Shadows
⋅
Examining Russian-language Cybercriminal Marketplaces |
2021-05-18
⋅
The Record
⋅
Darkside gang estimated to have made over $90 million from ransomware attacks DarkSide DarkSide Mailto Maze REvil Ryuk |
2021-05-17
⋅
Back Engineering
⋅
VMProtect 2 - Detailed Analysis of the Virtual Machine Architecture |
2021-05-17
⋅
Dragos
⋅
Investigating the Watering Hole Linked to the Oldsmar Water Treatment Facility Breach Tofsee |
2021-05-17
⋅
The Record
⋅
Three major hacking forums ban ransomware ads as some ransomware gangs shut down |
2021-05-17
⋅
Kaspersky
⋅
Bizarro banking Trojan expands its attacks to Europe Bizzaro |
2021-05-17
⋅
Gigamon
⋅
Tracking DarkSide and Ransomware: The Network View DarkSide DarkSide |
2021-05-16
⋅
Nikkei Asia
⋅
Japan lashes out against alleged Chinese military cyberattacks |