Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2023-10-05 ⋅ VirusBulletin ⋅ Hajime Yanagishita, Suguru Ishimaru, Yusuke Niwa
Unveiling activities of Tropic Trooper 2023: deep analysis of Xiangoop Loader and EntryShell payload
EntryShell SparrowDoor Xiangoop
2023-10-05 ⋅ Securonix ⋅ Dheeraj Kumar, Ella Dragun
Securonix Threat Labs Monthly Intelligence Insights – September 2023
UAC-0154
2023-10-05 ⋅ ANY.RUN ⋅ Lena (LambdaMamba)
Analyzing Snake Keylogger in ANY.RUN: a Full Walkthrough
404 Keylogger
2023-10-05 ⋅ ESET Research ⋅ Fernando Tavella
Operation Jacana: Foundling hobbits in Guyana
DinodasRAT
2023-10-05 ⋅ Group-IB ⋅ Group-IB
Let's dig deeper: dissecting the new Android Trojan GoldDigger with Group-IB Fraud Matrix
GoldDigger
2023-10-05 ⋅ EclecticIQ ⋅ Arda Büyükkaya
Chinese State-Sponsored Cyber Espionage Activity Targeting Semiconductor Industry in East Asia
ChargeWeapon Carderbee
2023-10-05 ⋅ Talos ⋅ Guilherme Venere
Qakbot-affiliated actors distribute Ransom Knight malware despite infrastructure takedown
QakBot
2023-10-05 ⋅ Twitter (@embee_research) ⋅ Embee_research
Introduction to DotNet Configuration Extraction - RevengeRAT
Revenge RAT
2023-10-04 ⋅ Virus Bulletin ⋅ Peter Kálnai
Lazarus Campaigns and Backdoors in 2022-23
SimpleTea POOLRAT 3CX Backdoor BLINDINGCAN CLOUDBURST DRATzarus ForestTiger ImprudentCook LambLoad LightlessCan miniBlindingCan PostNapTea SecondHandTea SnatchCrypto wAgentTea WebbyTea WinInetLoader
2023-10-04 ⋅ Trend Micro ⋅ Daniel Lunghi
Possible supply chain attack targeting Pakistan government delivers ShadowPad
ShadowPad
2023-10-04 ⋅ Trend Micro ⋅ Daniel Lunghi
Possible supply chain attack targeting Pakistan government delivers Shadowpad (Slides)
ShadowPad
2023-10-04 ⋅ Twitter (@embee_research) ⋅ Embee_research
Developing Yara Signatures for Malware - Practical Examples
DarkGate Lu0Bot
2023-10-04 ⋅ Twitter (@Intrisec) ⋅ CTI Intrinsec
Tweet about new Bumblebee campaign leveraging CVE-2023-38831
BumbleBee
2023-10-03 ⋅ TechCrunch ⋅ Lorenzo Franceschi-Bicchierai
FBI most-wanted Russian hacker reveals why he burned his passport
2023-10-03 ⋅ The Record ⋅ Jonathan Greig
NATO 'actively addressing' alleged cyberattack affecting some websites
SiegedSec
2023-10-03 ⋅ Malware Traffic Analysis ⋅ Brad Duncan
2023-10-03 (Tuesday) - PikaBot infection with Cobalt Strike
Cobalt Strike Pikabot
2023-10-03 ⋅ Twitter (@ShilpeshTrivedi) ⋅ Shilpesh Trivedi
Tweet about possible Rebranding/Deriviate for ERMAC called Rusty Droid
ERMAC
2023-10-03 ⋅ Glyc3rius
Stealc Malware Analysis
Stealc
2023-10-03 ⋅ Elastic ⋅ Andrew Pease, Cyril François, Daniel Stepanic, Salim Bitam, Seth Goodwin
Introducing the REF5961 intrusion set (RUDEBIRD, DOWNTOWN, and EAGERBEE)
EagerBee SManager REF2924 REF5961
2023-10-03 ⋅ Outpost24 ⋅ David Catalan
Rhadamanthys malware analysis: How infostealers use VMs to avoid analysis
Rhadamanthys