Click here to download all references as Bib-File.•
2022-11-03
⋅
Github (chronicle)
⋅
GCTI Open Source Detection Signatures Cobalt Strike Sliver |
2022-11-03
⋅
Sentinel LABS
⋅
Black Basta Ransomware | Attacks Deploy Custom EDR Evasion Tools Tied to FIN7 Threat Actor Black Basta |
2022-11-03
⋅
Zscaler
⋅
APT-36 Uses New TTPs and New Tools to Target Indian Governmental Organizations LimePad |
2022-11-03
⋅
Group-IB
⋅
OPERA1ER: Playing god without permission |
2022-11-03
⋅
paloalto Netoworks: Unit42
⋅
Cobalt Strike Analysis and Tutorial: Identifying Beacon Team Servers in the Wild Cobalt Strike |
2022-11-03
⋅
SentinelOne
⋅
Black Basta Ransomware | Attacks deploy Custom EDR Evasion Tools tied to FIN7 Threat Actor Black Basta QakBot SocksBot |
2022-11-02
⋅
CySecurity News
⋅
Missile Supplier MBDA Breach Disclosed by CloudSEK Adrastea |
2022-11-02
⋅
Sekoia
⋅
BlueFox Stealer: a newcomer designed for traffers teams Aurora Stealer BlueFox |
2022-11-02
⋅
cyble
⋅
New Laplas Clipper Distributed via SmokeLoader LaplasClipper |
2022-11-02
⋅
Blackberry
⋅
RomCom Threat Actor Abuses KeePass and SolarWinds to Target Ukraine and Potentially the United Kingdom ROMCOM RAT RomCom |
2022-11-02
⋅
Twitter (@_CPResearch_)
⋅
Tweet on Azov Wiper Azov Wiper |
2022-11-02
⋅
ASEC
⋅
Appleseed Being Distributed to Nuclear Power Plant-Related Companies Appleseed |
2022-11-02
⋅
NOZOMI Network Labs
⋅
Could Threat Actors Be Downgrading Their Malware to Evade Detection? Bashlite |
2022-11-01
⋅
BlackPoint
⋅
Ratting Out Arechclient2 SectopRAT |
2022-10-31
⋅
Kaspersky Labs
⋅
APT10: Tracking down LODEINFO 2022, part II LODEINFO |
2022-10-31
⋅
Kaspersky Labs
⋅
APT10: Tracking down LODEINFO 2022, part I LODEINFO |
2022-10-31
⋅
Twitter (@CryptoInsane)
⋅
Tweet about Yanluowang Leaks Yanluowang |
2022-10-31
⋅
Cynet
⋅
Orion Threat Alert: Qakbot TTPs Arsenal and the Black Basta Ransomware Black Basta Cobalt Strike QakBot |
2022-10-31
⋅
The Record
⋅
Mondelez and Zurich reach settlement in NotPetya cyberattack insurance suit EternalPetya |
2022-10-31
⋅
Elastic
⋅
ICEDIDs network infrastructure is alive and well IcedID |