Click here to download all references as Bib-File.•
2024-05-30
⋅
Cisco Talos
⋅
LilacSquid: The stealthy trilogy of PurpleInk, InkBox and InkLoader purpleink LilacSquid |
2024-05-01
⋅
Microsoft
⋅
“Dirty stream” attack: Discovering and mitigating a common vulnerability pattern in Android apps |
2024-04-30
⋅
Intrinsec
⋅
Matanbuchus & Co: Code Emulation and Cybercrime Infrastructure Discovery FAKEUPDATES Matanbuchus |
2024-04-24
⋅
Cisco
⋅
ArcaneDoor - New espionage-focused campaign found targeting perimeter network devices ArcaneDoor Storm-1849 |
2024-04-24
⋅
NCSC UK
⋅
Line Dancer - In-memory shellcode loader targeting Cisco Adaptive Security Appliance (ASA) devices. |
2024-04-24
⋅
NCSC UK
⋅
Line Runner: Persistent webshell targeting Cisco Adaptive Security Appliance (ASA) devices. |
2024-04-11
⋅
Microsoft
⋅
How Microsoft discovers and mitigates evolving attacks against AI guardrails |
2024-03-29
⋅
Openwall
⋅
Initial email disclosing suspected backdoor in xz tarballs xzbot |
2024-02-29
⋅
SANS ISC
⋅
Dissecting DarkGate: Modular Malware Delivery and Persistence as a Service DarkGate |
2024-02-15
⋅
Cisco Talos
⋅
TinyTurla Next Generation - Turla APT spies on Polish NGOs TinyTurlaNG |
2024-02-08
⋅
Cisco Talos
⋅
New Zardoor backdoor used in long-term cyber espionage operation targeting an Islamic organization HTran reGeorg Venom Proxy ZarDoor |
2024-02-03
⋅
Cloudsek
⋅
From Discussion Forums to Malware Mayhem: The Alarming Rise of Abuse on Google Groups and Usenet CrackedCantil |
2024-01-23
⋅
Arctic Wolf
⋅
CherryLoader: A New Go-based Loader Discovered in Recent Intrusions CherryLoader |
2024-01-11
⋅
SecurityScorecard
⋅
Volt Typhoon Compromises 30% of Cisco RV320/325 Devices in 37 Days |
2024-01-10
⋅
SecurityScorecard
⋅
Volt Typhoon Compromises 30% of Cisco RV320/325 Devices in 37 Days KV |
2024-01-09
⋅
Avast Decoded
⋅
Avast Updates Babuk Ransomware Decryptor in Cooperation with Cisco Talos and Dutch Police Babuk |
2023-12-12
⋅
Check Point Research
⋅
November 2023’s Most Wanted Malware: New AsyncRAT Campaign Discovered while FakeUpdates Re-Entered the Top Ten after Brief Hiatus FAKEUPDATES AsyncRAT |
2023-12-11
⋅
Cisco Talos
⋅
Operation Blacksmith: Lazarus targets organizations worldwide using novel Telegram-based malware written in DLang BottomLoader DLRAT HazyLoad NineRAT |
2023-11-30
⋅
Promon
⋅
Promon discovers new Android banking malware, “FjordPhantom” |
2023-11-21
⋅
Trellix
⋅
The Continued Evolution of the DarkGate Malware-as-a-Service DarkGate |