Click here to download all references as Bib-File.•
| 2021-08-26
⋅
CrowdStrike
⋅
NTLM Keeps Haunting Microsoft |
| 2021-08-26
⋅
Microsoft
⋅
Widespread credential phishing campaign abuses open redirector links |
| 2021-08-25
⋅
Cybleinc
⋅
​LockFile Ransomware: Exploiting Microsoft Exchange Vulnerabilities Using ProxyShell LockFile |
| 2021-08-23
⋅
Sophos SecOps
⋅
ProxyShell vulnerabilities in Microsoft Exchange: What to do LockFile |
| 2021-08-19
⋅
Microsoft
⋅
How to proactively defend against Mozi IoT botnet Mozi |
| 2021-08-19
⋅
Huntress Labs
⋅
Microsoft Exchange Servers Still Vulnerable to ProxyShell Exploit |
| 2021-08-10
⋅
Intezer
⋅
Fast Insights for a Microsoft-Signed Netfilter Rootkit NetfilterRootkit |
| 2021-08-04
⋅
FireEye
⋅
Cloudy with a Chance of APTNovel Microsoft 365 Attacks in the Wild |
| 2021-08-04
⋅
Microsoft
⋅
Spotting brand impersonation with Swin transformers and Siamese neural networks |
| 2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor BazarCall |
| 2021-07-29
⋅
Microsoft
⋅
When coin miners evolve, Part 2: Hunting down LemonDuck and LemonCat attacks Lemon Duck |
| 2021-07-29
⋅
Microsoft
⋅
BazaCall: Phony call centers lead to exfiltration and ransomware BazarBackdoor Cobalt Strike |
| 2021-07-27
⋅
Palo Alto Networks Unit 42
⋅
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group PlugX |
| 2021-07-24
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on attackers increasingly using HTML smuggling in phishing and other email campaigns to deliver Casbaneiro Metamorfo |
| 2021-07-22
⋅
Microsoft
⋅
When coin miners evolve, Part 1: Exposing LemonDuck and LemonCat, modern mining malware infrastructure Lemon Duck |
| 2021-07-20
⋅
Microsoft
⋅
The growing threat of ransomware |
| 2021-07-19
⋅
Microsoft
⋅
Fighting an emerging cybercrime trend |
| 2021-07-19
⋅
Washington Post
⋅
U.S., allies accuse China of hacking Microsoft and condoning other cyberattacks (APT40) |
| 2021-07-15
⋅
Microsoft
⋅
Protecting customers from a private-sector offensive actor using 0-day exploits and DevilsTongue malware DevilsTongue Caramel Tsunami |
| 2021-07-15
⋅
Microsoft
⋅
Fighting cyberweapons built by private businesses |