Click here to download all references as Bib-File.•
| 2023-04-20
⋅
Symantec
⋅
Daggerfly: APT Actor Targets Telecoms Company in Africa MgBot |
| 2023-04-20
⋅
Secureworks
⋅
Bumblebee Malware Distributed Via Trojanized Installer Downloads BumbleBee Cobalt Strike |
| 2023-04-20
⋅
Interlab
⋅
Uncovering nation state watering hole credential harvesting campaigns targeting human rights activists by APT threat group UCID902 |
| 2023-04-19
⋅
Symantec
⋅
Play Ransomware Group Using New Custom Data-Gathering Tools PLAY SystemBC |
| 2023-04-19
⋅
Google
⋅
Ukraine remains Russia’s biggest cyber focus in 2023 ROMCOM RAT |
| 2023-04-19
⋅
Microsoft
⋅
Exploring STRONTIUM's Abuse of Cloud Services FusionDrive |
| 2023-04-19
⋅
Google
⋅
Ukraine remains Russia’s biggest cyber focus in 2023 Rhadamanthys |
| 2023-04-18
⋅
Microsoft
⋅
Nation-state threat actor PHOSPHORUS refines tradecraft to attack high-value targets Drokbk |
| 2023-04-18
⋅
Twitter (@threatinsight)
⋅
Tweet on TA581 using Keitaro TDS URL to download a .MSI file to deliver BumbleBee malware BumbleBee |
| 2023-04-18
⋅
Microsoft
⋅
How Microsoft names threat actors |
| 2023-04-17
⋅
JUMPSEC LABS
⋅
Butting Heads with a Threat Actor on an Engagement |
| 2023-04-14
⋅
Dragos
⋅
2022 ICS/OT Threat Landscape Recap & What to Watch for This Year INDUSTROYER2 Wassonite |
| 2023-04-13
⋅
Google
⋅
Continuing our work to hold cybercriminal ecosystems accountable CryptBot |
| 2023-04-13
⋅
Microsoft
⋅
Threat actors strive to cause Tax Day headaches CloudEyE Remcos |
| 2023-04-12
⋅
Spamhaus
⋅
Spamhaus Botnet Threat Update Q1 2023 FluBot Amadey AsyncRAT Aurora Ave Maria BumbleBee Cobalt Strike DCRat Emotet IcedID ISFB NjRAT QakBot RecordBreaker RedLine Stealer Remcos Rhadamanthys Sliver Tofsee Vidar |
| 2023-04-12
⋅
loginsoft
⋅
Maximizing Threat Detections of Qakbot with Osquery QakBot |
| 2023-04-11
⋅
Microsoft
⋅
DEV-0196: QuaDream’s “KingsPawn” malware used to target civil society in Europe, North America, the Middle East, and Southeast Asia Carmine Tsunami |
| 2023-04-08
⋅
Team Cymru
⋅
Deriving Insight from Threat Actor Infrastructure Raccoon |
| 2023-04-07
⋅
Microsoft
⋅
MERCURY and DEV-1084: Destructive attack on hybrid environment DarkBit Storm-1084 |
| 2023-04-05
⋅
Google
⋅
How we’re protecting users from government-backed attacks from North Korea BabyShark |