Click here to download all references as Bib-File.•
| 2020-09-21
⋅
Cisco Talos
⋅
The art and science of detecting Cobalt Strike Cobalt Strike |
| 2020-09-11
⋅
Twitter (@Arkbird_SOLG)
⋅
Tweet on discovery of a sample Turla SilentMoon |
| 2020-09-10
⋅
SANS ISC InfoSec Forums
⋅
Recent Dridex activity Dridex |
| 2020-09-02
⋅
Cisco Talos
⋅
Salfram: Robbing the place without removing your name tag Ave Maria ISFB SmokeLoader Zloader |
| 2020-09-01
⋅
Cisco Talos
⋅
Quarterly Report: Incident Response trends in Summer 2020 Cobalt Strike LockBit Mailto Maze Ryuk |
| 2020-09-01
⋅
Twitter (@Vishnyak0v)
⋅
Tweet on sample discovery Unidentified 078 (Zebrocy Nim Loader?) |
| 2020-08-13
⋅
NSA
⋅
NSA and FBI Expose Russian Previously Undisclosed Malware “Drovorub” in Cybersecurity Advisory |
| 2020-08-13
⋅
National Security Agency
⋅
Russian GRU 85th GTsSS Deploys Previously Undisclosed Drovorub Malware |
| 2020-07-30
⋅
FireEye
⋅
Obscured by Clouds: Insights into Office 365 Attacks and How Mandiant Managed Defense Investigates |
| 2020-07-24
⋅
VMWare Carbon Black
⋅
TAU Threat Discovery: Cryptocurrency Clipper Malware Evolves Poulight Stealer |
| 2020-07-08
⋅
COLUMBIA | SIPA
⋅
Named But Hardly Shamed: What is the Impact of Information Disclosures on an APT Operations? |
| 2020-07-08
⋅
VMWare Carbon Black
⋅
TAU Threat Discovery: Conti Ransomware Conti |
| 2020-07-06
⋅
Cisco Talos
⋅
WastedLocker Goes "Big-Game Hunting" in 2020 WastedLocker |
| 2020-07-01
⋅
Cisco Talos
⋅
Threat Spotlight: Valak Slithers Its Way Into Manufacturing and Transportation Networks Valak IcedID ISFB MyKings Spreader |
| 2020-07-01
⋅
Lookout
⋅
Multiyear Surveillance Campaigns Discovered Targeting Uyghurs |
| 2020-06-29
⋅
Twitter (@dineshdina04)
⋅
Tweet on initial Discovery of EvilQuest EvilQuest |
| 2020-06-29
⋅
Cisco Talos
⋅
PROMETHIUM extends global reach with StrongPity3 APT StrongPity |
| 2020-06-26
⋅
Symantec
⋅
WastedLocker: Symantec Identifies Wave of Attacks Against U.S. Organizations donut_injector WastedLocker |
| 2020-06-24
⋅
Twitter (@struppigel)
⋅
Tweet on DiscordTokenStealer |
| 2020-06-23
⋅
Symantec
⋅
Sodinokibi: Ransomware Attackers also Scanning for PoS Software, Leveraging Cobalt Strike Cobalt Strike REvil |