Click here to download all references as Bib-File.•
| 2021-05-26
⋅
Check Point
⋅
Melting Ice – Tracking IcedID Servers with a few simple steps IcedID |
| 2021-05-25
⋅
Trend Micro
⋅
TeamTNT Targets Kubernetes, Nearly 50,000 IPs Compromised in Worm-like Attack |
| 2021-05-25
⋅
lacework
⋅
Taking TeamTNT’s Docker Images Offline |
| 2021-05-24
⋅
Anchored Narratives on Threat Intelligence and Geopolitics
⋅
Tracking StrongPity with Yara StrongPity |
| 2021-05-24
⋅
⋅
Medium s2wlab
⋅
Deep Analysis of Raccoon Stealer Raccoon |
| 2021-05-24
⋅
MIT Technology Review
⋅
The Colonial pipeline ransomware hackers had a secret weapon: self-promoting cybersecurity firms DarkSide DarkSide |
| 2021-05-22
⋅
Youtube (ACPEnw)
⋅
Lessons Learned from a Cyber Attack System Admin Perspective Ryuk |
| 2021-05-21
⋅
⋅
LAC
⋅
Targeted attack by 'Cobalt Strike loader' that exploits Microsoft's digital signature-Attacker group APT41 Cobalt Strike DUSTPAN |
| 2021-05-21
⋅
blackarrow
⋅
Leveraging Microsoft Teams to persist and cover up Cobalt Strike traffic Cobalt Strike |
| 2021-05-21
⋅
⋅
Research report of the series of attacks on the state authorities of the Russian Federation Mail-O |
| 2021-05-21
⋅
The Record
⋅
FSB NKTsKI: Foreign ‘cyber mercenaries’ breached Russian federal agencies Mail-O |
| 2021-05-21
⋅
Bleeping Computer
⋅
DarkSide affiliates claim gang's bitcoins in deposit on hacker forum DarkSide |
| 2021-05-20
⋅
FBI
⋅
Alert Number CP-000147-MW: Conti Ransomware Attacks Impact Healthcare and First Responder Networks Conti |
| 2021-05-20
⋅
Wired
⋅
The Full Story of the Stunning RSA Hack Can Finally Be Told |
| 2021-05-20
⋅
lacework
⋅
8220 Gangs Recent use of Custom Miner and Botnet |
| 2021-05-20
⋅
Github (microsoft)
⋅
Microsoft 365 Defender Hunting Queries for hunting multiple threat actors' TTPs and malwares STRRAT OceanLotus BabyShark Elise Revenge RAT WastedLocker Zebrocy |
| 2021-05-19
⋅
Team Cymru
⋅
Tracking BokBot Infrastructure Mapping a Vast and Currently Active BokBot Network IcedID |
| 2021-05-19
⋅
Medium Mehmet Ergene
⋅
Enterprise Scale Threat Hunting: Network Beacon Detection with Unsupervised ML and KQL — Part 2 Cobalt Strike |
| 2021-05-19
⋅
Nozomi Networks
⋅
Colonial Pipeline Ransomware Attack: Revealing How DarkSide Works DarkSide |
| 2021-05-19
⋅
The Record
⋅
SolarWinds CEO apologizes for blaming an intern, says attack may have started in January 2019 |