Click here to download all references as Bib-File.•
2021-03-06
⋅
Github (microsoft)
⋅
Security scripts HAFNIUM |
2021-03-05
⋅
Microsoft
⋅
Exchange Server IIS dropping web shells and other artifacts HAFNIUM |
2021-03-05
⋅
Github (cert-lv)
⋅
Detect webshells dropped on Microsoft Exchange servers after 0day compromises HAFNIUM |
2021-03-04
⋅
CrowdStrike
⋅
Falcon Complete Stops Microsoft Exchange Server Zero-Day Exploits CHINACHOPPER HAFNIUM |
2021-03-04
⋅
FireEye
⋅
Detection and Response to Exploitation of Microsoft Exchange Zero-Day Vulnerabilities CHINACHOPPER HAFNIUM |
2021-03-04
⋅
Microsoft
⋅
GoldMax, GoldFinder, and Sibot: Analyzing NOBELIUM’s layered persistence GoldMax |
2021-03-04
⋅
Microsoft
⋅
GoldMax, GoldFinder, and Sibot: Analyzing NOBELIUM’s layered persistence SUNBURST TEARDROP UNC2452 |
2021-03-03
⋅
⋅
GTSC
⋅
'Mild' update on Microsoft Exchange 0day security vulnerability being used to attack organizations in Vietnam ToddyCat |
2021-03-03
⋅
CISA
⋅
Mitigate Microsoft Exchange On-Premises Product Vulnerabilities |
2021-03-03
⋅
CISA
⋅
Alert (AA21-062A): Mitigate Microsoft Exchange Server Vulnerabilities HAFNIUM |
2021-03-02
⋅
Microsoft
⋅
New nation-state cyberattacks (HAFNIUM) |
2021-03-02
⋅
Microsoft
⋅
Multiple Security Updates Released for Exchange Server – updated March 8, 2021 HAFNIUM |
2021-03-02
⋅
Rapid7 Labs
⋅
Rapid7’s InsightIDR Enables Detection And Response to Microsoft Exchange Zero-Day CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Volexity
⋅
Operation Exchange Marauder: Active Exploitation of Multiple Zero-Day Microsoft Exchange Vulnerabilities CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Microsoft
⋅
HAFNIUM targeting Exchange Servers with 0-day exploits CHINACHOPPER HAFNIUM |
2021-03-02
⋅
Github (microsoft)
⋅
Microsoft-365-Defender-Hunting-Queries for hunting Gootkit malware delivery and C2 GootKit |
2021-03-02
⋅
Twitter (@MsftSecIntel)
⋅
Tweet on Gootkit malware campaign GootKit |
2021-03-02
⋅
Microsoft
⋅
HAFNIUM targeting Exchange Servers with 0-day exploits PowerCat |
2021-03-01
⋅
Microsoft
⋅
Detect and defend against the recent nation-state cyber attack SUNBURST |
2021-02-25
⋅
Microsoft
⋅
CodeQL queries to hunt for Solorigate activity SUNBURST |