Click here to download all references as Bib-File.•
| 2021-07-15
⋅
Palo Alto Networks Unit 42
⋅
Mespinoza Ransomware Gang Calls Victims “Partners,” Attacks with Gasket, "MagicSocks" Tools Gasket Mespinoza |
| 2021-07-15
⋅
ReversingLabs
⋅
Data Exfiltrator - A New Tactic for Ransomware Adversaries DataExfiltrator |
| 2021-07-15
⋅
Facebook
⋅
Taking Action Against Hackers in Iran Liderc SysKit |
| 2021-07-14
⋅
Google
⋅
How We Protect Users From 0-Day Attacks (CVE-2021-21166, CVE-2021-30551, CVE-2021-33742, CVE-2021-1879) Cobalt Strike |
| 2021-07-14
⋅
Bleeping Computer
⋅
BazarBackdoor sneaks in through nested RAR and ZIP archives BazarBackdoor |
| 2021-07-14
⋅
Bitdefender
⋅
How We Tracked a Threat Group Running an Active Cryptojacking Campaign |
| 2021-07-14
⋅
Medium TowardsDataScience
⋅
Domain Blooms: Identifying Domain Name Themes Targeted By Threat Actors |
| 2021-07-14
⋅
Intezer
⋅
Targeted Phishing Attack against Ukrainian Government Expands to Georgia Unidentified 083 (AutoIT Stealer) |
| 2021-07-14
⋅
Cado Security
⋅
Triage analysis of Serv-U FTP user backdoor deployed by CVE-2021-35211 (DEV-0322) |
| 2021-07-14
⋅
Kaspersky
⋅
LuminousMoth APT: Sweeping attacks for the chosen few Cobalt Strike |
| 2021-07-14
⋅
Telekom
⋅
LOCKDATA Auction – Another leak marketplace showing the recent shift of ransomware operators Cryakl |
| 2021-07-13
⋅
YouTube ( Matt Soseman)
⋅
Solarwinds and SUNBURST attacks compromised my lab! Cobalt Strike Raindrop SUNBURST TEARDROP |
| 2021-07-13
⋅
Symantec
⋅
Attacks Against the Government Sector Raindrop TEARDROP |
| 2021-07-13
⋅
Microsoft
⋅
Microsoft discovers threat actor (DEV-0322) targeting SolarWinds Serv-U software with 0-day exploit |
| 2021-07-13
⋅
Threat Post
⋅
Guess Fashion Brand Deals With Data Loss After Ransomware Attack DarkSide |
| 2021-07-12
⋅
JPCERT/CC
⋅
Attack Exploiting XSS Vulnerability in E-commerce Websites Unidentified JS 005 (Stealer) |
| 2021-07-12
⋅
The Record
⋅
Over 780,000 email accounts compromised by Emotet have been secured Emotet |
| 2021-07-09
⋅
Twitter (@SophosLabs)
⋅
Tweet on speed at which Kaseya REvil attack was conducted REvil |
| 2021-07-08
⋅
Medium s2wlab
⋅
Analysis of Lazarus malware abusing Non-ActiveX Module in South Korea Racket Downloader |
| 2021-07-08
⋅
Recorded Future
⋅
Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and Taiwan Using Winnti and Other Tooling Cobalt Strike Earth Lusca |