Click here to download all references as Bib-File.•
2021-12-14
⋅
Zscaler
⋅
Neutralizing Apache Log4j Exploits with Identity-Based Segmentation |
2021-12-14
⋅
Mandiant
⋅
Azure Run Command for Dummies |
2021-12-14
⋅
Symantec
⋅
Espionage Campaign Targets Telecoms Organizations across Middle East and Asia MimiKatz |
2021-12-14
⋅
Prevailion
⋅
DarkWatchman: A new evolution in fileless techniques DarkWatchman |
2021-12-14
⋅
Kaspersky Labs
⋅
Owowa: the add-on that turns your OWA into a credential stealer and remote access panel Owowa |
2021-12-13
⋅
RiskIQ
⋅
RiskIQ: Connections between Nanocore, Netwire, and AsyncRAT and Vjw0rm dynamic DNS C2 infrastructure AsyncRAT Nanocore RAT NetWire RC Vjw0rm |
2021-12-13
⋅
Cado Security
⋅
Analysis of Initial In The Wild Attacks Exploiting Log4Shell/Log4J/CVE-2021-44228 Kinsing Mirai Tsunami |
2021-12-13
⋅
Mandiant
⋅
Now You Serial, Now You Don’t — Systematically Hunting for Deserialization Exploits |
2021-12-12
⋅
NCC Group
⋅
Log4Shell: Reconnaissance and post exploitation network detection |
2021-12-12
⋅
Sophos
⋅
Log4Shell Hell: anatomy of an exploit outbreak |
2021-12-11
⋅
Microsoft
⋅
Guidance for preventing, detecting, and hunting for exploitation of the Log4j 2 vulnerability Khonsari NightSky BRONZE STARLIGHT |
2021-12-11
⋅
Symantec
⋅
Apache Log4j Zero-Day Being Exploited in the Wild Kaiten |
2021-12-10
⋅
Dissecting Malware
⋅
BlackCatConf - Static Configuration Extractor for BlackCat Ransomware BlackCat |
2021-12-10
⋅
Medium s2wlab
⋅
BlackCat: New Rust based ransomware borrowing BlackMatter’s configuration BlackCat BlackMatter |
2021-12-10
⋅
Trend Micro
⋅
New Yanluowang Ransomware Found to be Code-Signed, Terminates Database-Related Processes |
2021-12-10
⋅
Mississippi State University
⋅
Detecting malware in memory with memory object relationships |
2021-12-09
⋅
Group-IB
⋅
Inside the Hive: Deep dive into Hive RaaS, analysis of latest samples Hive Hive |
2021-12-09
⋅
HP
⋅
Emotet’s Return: What’s Different? Emotet |
2021-12-09
⋅
Trend Micro
⋅
The Evolution of IoT Linux Malware Based on MITRE ATT&CK TTPs Dark Nexus QSnatch |
2021-12-09
⋅
Minerva Labs
⋅
A new StrongPity variant hides behind Notepad++ installation StrongPity |