Click here to download all references as Bib-File.•
| 2025-10-15
            
            ⋅
            
            NTT
            ⋅
            
             OtterCandy, malware used by WaterPlum OtterCandy  | 
| 2025-05-07
            
            ⋅
            
            NTT Security
            ⋅
            
             Additional Features of OtterCookie Malware Used by WaterPlum BeaverTail OtterCookie InvisibleFerret  | 
| 2025-01-16
            
            ⋅
            
            NTT Security
            ⋅
            
             OtterCookie, new malware used in Contagious Interview campaign OtterCookie  | 
| 2024-12-24
            
            ⋅
            
            
            ⋅
            
            NTT Security Holdings
            ⋅
            
             Contagious Interview Uses New Malware Otter Cookie BeaverTail OtterCookie InvisibleFerret  | 
| 2024-08-22
            
            ⋅
            
            
            ⋅
            
            NTT
            ⋅
            
             AppDomainManager Injectionを悪用したマルウェアによる攻撃について Cobalt Strike Earth Baxia  | 
| 2024-08-22
            
            ⋅
            
            NTT Security
            ⋅
            
             Attacks by malware abusing AppDomainManager Injection  | 
| 2024-02-16
            
            ⋅
            
            Medium b.magnezi
            ⋅
            
             Malware Analysis — AgentTesla Agent Tesla  | 
| 2024-01-09
            
            ⋅
            
            BitSight
            ⋅
            
             Data Insights on AgentTesla and OriginLogger Victims Agent Tesla OriginLogger  | 
| 2024-01-08
            
            ⋅
            
            YouTube (Embee Research)
            ⋅
            
             Javascript Malware Analysis - Decoding an AgentTesla Loader Agent Tesla  | 
| 2023-09-27
            
            ⋅
            
            SecurityAffairs
            ⋅
            
             ‘Ransomed.VC’ in the Spotlight – What is Known About the Ransomware Group Targeting Sony and NTT Docomo RansomVC  | 
| 2023-06-12
            
            ⋅
            
            
            ⋅
            
            NTT Security
            ⋅
            
             About PowerHarbor, a new malware used by SteelClover PowerHarbor  | 
| 2023-05-07
            
            ⋅
            
            Twitter (@embee_research)
            ⋅
            
             AgentTesla - Full Loader Analysis - Resolving API Hashes Using Conditional Breakpoints Agent Tesla  | 
| 2023-04-07
            
            ⋅
            
            Elastic
            ⋅
            
             Attack chain leads to XWORM and AGENTTESLA Agent Tesla XWorm  | 
| 2023-03-23
            
            ⋅
            
            Logpoint
            ⋅
            
             Emerging Threats: AgentTesla – A Review and Detection Strategies Agent Tesla  | 
| 2023-02-08
            
            ⋅
            
            NTT Security
            ⋅
            
             SteelClover Attacks Distributing Malware Via Google Ads Increased BATLOADER ISFB RedLine Stealer  | 
| 2023-01-16
            
            ⋅
            
            Difesa & Sicurezza
            ⋅
            
             Cybercrime, RFQ from Turkey carries AgentTesla and zgRAT Agent Tesla zgRAT  | 
| 2022-09-29
            
            ⋅
            
            NTT
            ⋅
            
             Report on APT Attacks by BlackTech Bifrost PLEAD TSCookie Flagpro Gh0stTimes SelfMake Loader SPIDERPIG RAT  | 
| 2022-07-20
            
            ⋅
            
            
            ⋅
            
            Cert-UA
            ⋅
            
             Cyberattack on State Organizations of Ukraine using the topic OK "South" and the malicious program AgentTesla (CERT-UA#4987) Agent Tesla  | 
| 2022-05-11
            
            ⋅
            
            NTT Security Holdings
            ⋅
            
             Analysis of an Iranian APTs “E400” PowGoop Variant Reveals Dozens of Control Servers Dating Back to 2020 PowGoop  | 
| 2022-05-11
            
            ⋅
            
            
            ⋅
            
            NTT
            ⋅
            
             Operation RestyLink: Targeted attack campaign targeting Japanese companies Cobalt Strike  |