Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2021-05-14Twitter (@ConfiantIntel)ConfiantIntel
Tweet on OSX/Bundlore Loader compiled for ARM
Bundlore
2021-05-11Twitter (@xuy1202)YANG XU
Tweet on necro's new DGA
N3Cr0m0rPh
2021-05-11Twitter (@MsftSecIntel)Microsoft Security Intelligence
Tweet on Snip3 crypter delivering AsyncRAT or AgentTesla
Agent Tesla AsyncRAT
2021-05-08Twitter (@Jacob_Pimental)Jacob Pimental
Tweet on CyberChef recipe to extract Revil Ransomware configuration
REvil
2021-05-06Twitter (@MrDanPerez)Dan Perez
Tweet on UNC302 / oro0lxy using ColdFusion
BRONZE SPRING
2021-05-06Twitter (@SyscallE)NtUnmapViewOfSection
Tweet on short analysis of Nebulae Backdoor
Nebulae
2021-05-05Twitter (@3xp0rtblog)3xp0rt
Tweet on Toxin Miner
2021-05-04Twitter (@elisalem9)Eli Salem
Tweet on analysis of N3tw0rm ransomware
2021-05-04Twitter (@TrendMicroRSRCH)Trend Micro Research
Tweet on N3tw0rm ransomware, that has started affecting users in Israel.
Pay2Key
2021-05-03Twitter (@y_advintel)Yelisey Boguslavskiy
Tween on new RaaS Galaxy Ransomware
2021-05-01whtaguy researchTwitter (@whtaguy)
Guy's 30 Reverse Engineering Tips & Tricks
2021-05-01Twitter (@JAMESWT_MHT)JamesWT
Tweet on linux version of DarkSide ransomware
DarkSide DarkSide
2021-04-30Twitter (@3xp0rtblog)3xp0rt
Tweet on Zenar Miner
2021-04-26getrevueTwitter (@80vul)
Hunting Cobalt Strike DNS redirectors by using ZoomEye
Cobalt Strike
2021-04-23Twitter (@vikas891)Vikas Singh
Tweet on DOPPEL SPIDER using Intensive/Multiple Injected Cobalt Strike Beacons with varied polling intervals
Cobalt Strike DoppelPaymer
2021-04-22Twitter (@AltShiftPrtScn)Peter Mackenzie
Twwet On TTPs seen in IR used by DOPPEL SPIDER
Cobalt Strike DoppelPaymer
2021-04-22Twitter (@ET_Labs)ET Labs
Tweet on Lunar Builder exfiltrating data via Discord webhook
2021-04-22Twitter (@AffableKraut)Eric Brandel
A thread on possibly new magecart skimmer
magecart
2021-04-21Twitter (@alberto__segura)Alberto Segura
Tweet on FluBot Version 4.0
FluBot
2021-04-20Twitter (@iiyonite)Stefan Soesanto
Tweet on Uniti 61419
Tick