Click here to download all references as Bib-File.•
| 2024-09-20
⋅
Trend Micro
⋅
How Ransomhub Ransomware Uses EDRKillShifter to Disable EDR and Antivirus Protections RansomHub Water Bakunawa |
| 2024-09-19
⋅
PWC
⋅
COLDWASTREL of space Callisto |
| 2024-08-14
⋅
CitizenLab
⋅
Rivers of Phish: Sophisticated Phishing Targets Russia’s Perceived Enemies Around the Globe Callisto |
| 2024-07-24
⋅
Google
⋅
APT45: North Korea’s Digital Military Machine SHATTEREDGLASS APT45 |
| 2024-04-17
⋅
Mandiant
⋅
Unearthing APT44: Russia’s Notorious Cyber Sabotage Unit Sandworm Sandworm |
| 2024-04-16
⋅
Mandiant
⋅
APT44: Unearthing Sandworm VPNFilter BlackEnergy CaddyWiper EternalPetya HermeticWiper Industroyer INDUSTROYER2 Olympic Destroyer PartyTicket RoarBAT Sandworm |
| 2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies BRICKSTORM TONERJAM |
| 2024-04-04
⋅
Mandiant
⋅
Cutting Edge, Part 4: Ivanti Connect Secure VPN Post-Exploitation Lateral Movement Case Studies BRICKSTORM TONERJAM UNC3569 UNC5266 UNC5291 UNC5330 UNC5337 UTA0178 |
| 2024-04-04
⋅
InfoSec Handlers Diary Blog
⋅
Slicing up DoNex with Binary Ninja Donex |
| 2024-02-29
⋅
SANS ISC
⋅
Dissecting DarkGate: Modular Malware Delivery and Persistence as a Service DarkGate |
| 2024-02-05
⋅
YouTube (John Hammond)
⋅
PikaBot Malware Analysis: Debugging in Visual Studio Pikabot |
| 2024-01-12
⋅
Mandiant
⋅
Cutting Edge: Suspected APT Targets Ivanti Connect Secure VPN in New Zero-Day Exploitation UTA0178 |
| 2024-01-09
⋅
Trend Micro
⋅
Black Basta-Affiliated Water Curupira’s Pikabot Spam Campaign Pikabot Water Curupira |
| 2023-12-14
⋅
Imperva
⋅
Imperva Detects Undocumented 8220 Gang Activities Water Sigbin |
| 2023-12-13
⋅
Fortinet
⋅
TeamCity Intrusion Saga: APT29 Suspected Among the Attackers Exploiting CVE-2023-42793 GraphDrop |
| 2023-11-15
⋅
Fortinet
⋅
Investigating the New Rhysida Ransomware Rhysida |
| 2023-11-09
⋅
Mandiant
⋅
Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology CaddyWiper |
| 2023-10-23
⋅
SarlackLab
⋅
Advice For Catching a RedLine Stealer RedLine Stealer |
| 2023-10-10
⋅
Mandiant
⋅
Assessed Cyber Structure and Alignments of North Korea in 2023 TraderTraitor UNC1069 |
| 2023-09-28
⋅
Ransomware.org
⋅
The Scattered Spider Ransomware Group’s Secret Weapons? Social Engineering and Fluent English |