Click here to download all references as Bib-File.
2022-03-16 ⋅ SANS ISC ⋅ Qakbot infection with Cobalt Strike and VNC activity Cobalt Strike QakBot |
2022-02-18 ⋅ SANS ISC ⋅ Remcos RAT Delivered Through Double Compressed Archive Remcos |
2022-02-11 ⋅ blog.rootshell.be ⋅ [SANS ISC] CinaRAT Delivered Through HTML ID Attributes Quasar RAT |
2022-02-08 ⋅ Sansec ⋅ NaturalFreshMall: a mass store hack |
2022-01-25 ⋅ SANS ISC ⋅ Emotet Stops Using 0.0.0.0 in Spambot Traffic Emotet |
2022-01-20 ⋅ blog.rootshell.be ⋅ [SANS ISC] RedLine Stealer Delivered Through FTP RedLine Stealer |
2022-01-20 ⋅ SANS ISC InfoSec Forums ⋅ RedLine Stealer Delivered Through FTP RedLine Stealer |
2021-12-03 ⋅ SANS ISC InfoSec Forums ⋅ TA551 (Shathak) pushes IcedID (Bokbot) IcedID |
2021-11-24 ⋅ Sansec ⋅ CronRAT malware hides behind February 31st CronRAT |
2021-11-18 ⋅ Sansec ⋅ Linux malware agent hits eCommerce sites |
2021-08-23 ⋅ Youtube (SANS Digital Forensics and Incident Response) ⋅ Keynote: Cobalt Strike Threat Hunting Cobalt Strike |
2021-07-27 ⋅ Youtube (SANS Institute) ⋅ SANS Threat Analysis Rundown - Kaseya VSA attack REvil |
2021-06-01 ⋅ SANS ⋅ A Contrarian View on SolarWinds Cobalt Strike Raindrop SUNBURST TEARDROP |
2021-03-09 ⋅ Youtube (SANS Digital Forensics and Incident Response) ⋅ Jackpotting ESXi Servers For Maximum Encryption | Eric Loui & Sergei Frankoff | SANS CTI Summit 2021 DarkSide RansomEXX DarkSide RansomEXX GOLD DUPONT |
2021-03-08 ⋅ Youtube (SANS Digital Forensics and Incident Response) ⋅ STAR Webcast: Making sense of SolarWinds through the lens of MITRE ATT&CK(R) Cobalt Strike SUNBURST TEARDROP |
2020-12-02 ⋅ Sansec ⋅ Persistent parasite in EOL Magento 2 stores wakes at Black Friday magecart |
2020-11-26 ⋅ Sansec ⋅ Payment skimmer hides in social media buttons |
2020-11-19 ⋅ SANS ISC InfoSec Forums ⋅ PowerShell Dropper Delivering Formbook Formbook |
2020-10-28 ⋅ Youtube (SANS Digital Forensics and Incident Response) ⋅ STAR Webcast: Spooky RYUKy: The Return of UNC1878 Ryuk |
2020-10-28 ⋅ Youtube (SANS Institute) ⋅ Spooky RYUKy: The Return of UNC1878 | SANS STAR Webcast Ryuk UNC1878 |