Click here to download all references as Bib-File.•
| 2021-09-20
⋅
SentinelOne
⋅
Defeating macOS Malware Anti-Analysis Tricks with Radare2 EvilQuest |
| 2021-09-20
⋅
Chainanalysis
⋅
Chainalysis in Action: OFAC Sanctions Russian Cryptocurrency OTC Suex that Received Over $160 million from Ransomware Attackers, Scammers, Darknet Markets, and Seized Exchange BTC-e |
| 2021-09-19
⋅
NetbyteSEC
⋅
Discovering Linux ELF Beacon of Cobalt Strike Tool Vermilion Strike |
| 2021-09-19
⋅
HP
⋅
MirrorBlast and TA505: Examining Similarities in Tactics, Techniques and Procedures MirrorBlast |
| 2021-09-19
⋅
The Record
⋅
Alaska discloses ‘sophisticated’ nation-state cyberattack on health service |
| 2021-09-17
⋅
Group-IB
⋅
Scamdemic outbreak Scammers attack users in Middle Eastern countries |
| 2021-09-16
⋅
Department Of Health And Social Services (DHSS)
⋅
Department of Health and Social Services 2021 Cyberattack: Frequently Asked Questions Updated Sept. 16, 2021 |
| 2021-09-16
⋅
Lumen
⋅
No Longer Just Theory: Black Lotus Labs Uncovers Linux Executables Deployed as Stealth Windows Loaders PrivetSanya Meterpreter |
| 2021-09-16
⋅
Twitter (@GossiTheDog)
⋅
Tweet on some unknown threat actor dropping Mgbot, custom IIS modular backdoor and cobalstrike using exploiting ProxyShell Cobalt Strike MgBot |
| 2021-09-16
⋅
Akamai
⋅
Capoae Malware Ramps Up: Uses Multiple Vulnerabilities and Tactics to Spread Capoae |
| 2021-09-16
⋅
Cisco
⋅
Operation Layover: How we tracked an attack on the aviation industry to five years of compromise AsyncRAT Houdini NjRAT |
| 2021-09-16
⋅
CISA
⋅
APT Actors Exploiting Newly Identified Vulnerability in ManageEngine ADSelfService Plus |
| 2021-09-16
⋅
Blackberry
⋅
Threat Thursday: NetWire RAT is Coming Down the Line NetWire RC |
| 2021-09-15
⋅
Microsoft
⋅
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability EXOTIC LILY |
| 2021-09-15
⋅
Microsoft
⋅
Analyzing attacks that exploit the CVE-2021-40444 MSHTML vulnerability Cobalt Strike |
| 2021-09-14
⋅
NK News
⋅
North Korea-linked account poses as KBS scriptwriter to dupe DPRK watchers |
| 2021-09-14
⋅
CrowdStrike
⋅
Big Game Hunting TTPs Continue to Shift After DarkSide Pipeline Attack BlackMatter DarkSide REvil Avaddon BlackMatter Clop Conti CryptoLocker DarkSide DoppelPaymer Hades REvil |
| 2021-09-14
⋅
Fortinet
⋅
More ProxyShell? Web Shells Lead to ZeroLogon and Application Impersonation Attacks |
| 2021-09-13
⋅
Malwarebytes
⋅
The many tentacles of Magecart Group 8 magecart |
| 2021-09-13
⋅
Imperva
⋅
Attackers exploit CVE-2021-26084 for XMRig crypto mining on affected Confluence servers |