Click here to download all references as Bib-File.•
2021-04-23
⋅
Twitter (@vikas891)
⋅
Tweet on DOPPEL SPIDER using Intensive/Multiple Injected Cobalt Strike Beacons with varied polling intervals Cobalt Strike DoppelPaymer |
2021-04-22
⋅
Twitter (@AltShiftPrtScn)
⋅
Twwet On TTPs seen in IR used by DOPPEL SPIDER Cobalt Strike DoppelPaymer |
2021-04-22
⋅
Twitter (@ET_Labs)
⋅
Tweet on Lunar Builder exfiltrating data via Discord webhook |
2021-04-22
⋅
Twitter (@AffableKraut)
⋅
A thread on possibly new magecart skimmer magecart |
2021-04-21
⋅
Twitter (@alberto__segura)
⋅
Tweet on FluBot Version 4.0 FluBot |
2021-04-20
⋅
Twitter (@iiyonite)
⋅
Tweet on Uniti 61419 Tick |
2021-04-19
⋅
Twitter (@_alex_il_)
⋅
Tweet on QakBot's additional decryption mechanism QakBot |
2021-04-18
⋅
Twitter (@ViriBack)
⋅
Tweet on Seth Loader |
2021-04-15
⋅
Twitter (@felixw3000)
⋅
Tweet on Dridex's evasion technique Dridex |
2021-04-13
⋅
Twitter (@ESETresearch)
⋅
Tweet on TSCookie for FreeBSD platform TSCookie |
2021-04-12
⋅
Twitter (@inversecos)
⋅
Tweet on TTPs associated with Hades Ransomware Hades |
2021-04-12
⋅
Twitter (@elisalem9)
⋅
Tweets on QakBot QakBot |
2021-04-08
⋅
Twitter (@3xp0rtblog)
⋅
Tweet on Bloody Stealer BloodyStealer |
2021-03-31
⋅
Twitter (@hatr)
⋅
Tweet on Ghostwriter Ghostwriter |
2021-03-31
⋅
Twitter (@ClearskySec)
⋅
Tweet on Adamantium stealer Adamantium Thief |
2021-03-27
⋅
Github (StrangerealIntel)
⋅
Terraloader: Congrats, you have a new fake job! TerraLoader |
2021-03-26
⋅
Twitter (@3xp0rtblog)
⋅
Tweet on Cypress Stealer |
2021-03-25
⋅
Twitter (@ESETresearch)
⋅
Tweet on iOS/Spy.Postlo.A malware |
2021-03-24
⋅
Twitter (@opa334dev)
⋅
Tweet about hashes for Postlo Postlo |
2021-03-24
⋅
Twitter (@VK_intel)
⋅
Tweet on REvil ransomware REvil |